Log in
Enquire now
‌

US Patent 11055411 System and method for protection against ransomware attacks

Patent 11055411 was granted and assigned to Acronis on July, 2021 by the United States Patent and Trademark Office.

OverviewStructured DataIssuesContributors

Contents

Is a
Patent
Patent
0

Patent attributes

Patent Applicant
Acronis
Acronis
0
Current Assignee
Acronis
Acronis
0
Patent Jurisdiction
United States Patent and Trademark Office
United States Patent and Trademark Office
0
Patent Number
110554110
Patent Inventor Names
Vladimir Strogov0
Serguei Beloussov0
Stanislav Protasov0
Valery Chernyakovsky0
Vyacheslav Levchenko0
Alexey Dod0
Anatoly Stupak0
Date of Patent
July 6, 2021
0
Patent Application Number
164065680
Date Filed
May 8, 2019
0
Patent Citations
‌
US Patent 10503904 Ransomware detection and mitigation
‌
US Patent 10229269 Detecting ransomware based on file comparisons
‌
US Patent 10121003 Detection of malware, such as ransomware
Patent Citations Received
‌
US Patent 12124574 System and method of synthesizing potential malware for predicting a cyberattack
0
‌
US Patent 11520907 Storage system snapshot retention based on encrypted data
‌
US Patent 11687418 Automatic generation of recovery plans specific to individual storage elements
0
‌
US Patent 11341236 Traffic-based detection of a security threat to a storage system
‌
US Patent 11941116 Ransomware-based data protection parameter modification
0
0
0
‌
US Patent 12067118 Detection of writing to a non-header portion of a file as an indicator of a possible ransomware attack against a storage system
0
...
Patent Primary Examiner
‌
Aravind K Moorthy
0
Patent abstract

A method is provided for protecting a file server from a ransomware attack. An exemplary method comprises assigning a session identifier to a remote session initiated with the file server, monitoring operations associated with the session identifier, determining whether the operations are suspicious according to a policy, creating a volume-level snapshot of files on the file server, determining that encryption of the data is occurring when entropy of the monitored data is growing faster than the predetermined threshold rate, classifying the remote session as having a calculated degree of danger when the operations match operations contained in previously observed suspicious behavior patterns, interrupting the remote session when a combination of the degree of danger and the entropy is greater than a predetermined threshold value and restoring the data on the file server using the volume-level snapshot to a state prior to the encryption and dangerous activity.

Timeline

No Timeline data yet.

Further Resources

Title
Author
Link
Type
Date
No Further Resources data yet.

References

Find more entities like US Patent 11055411 System and method for protection against ransomware attacks

Use the Golden Query Tool to find similar entities by any field in the Knowledge Graph, including industry, location, and more.
Open Query Tool
Access by API
Golden Query Tool
Golden logo

Company

  • Home
  • Press & Media
  • Blog
  • Careers
  • WE'RE HIRING

Products

  • Knowledge Graph
  • Query Tool
  • Data Requests
  • Knowledge Storage
  • API
  • Pricing
  • Enterprise
  • ChatGPT Plugin

Legal

  • Terms of Service
  • Enterprise Terms of Service
  • Privacy Policy

Help

  • Help center
  • API Documentation
  • Contact Us
By using this site, you agree to our Terms of Service.