Log in
Enquire now
‌

US Patent 7448084 System and methods for detecting intrusions in a computer system by monitoring operating system registry accesses

OverviewStructured DataIssuesContributors

Contents

Is a
Patent
Patent

Patent attributes

Patent Jurisdiction
United States Patent and Trademark Office
United States Patent and Trademark Office
Patent Number
7448084
Patent Inventor Names
Andrew Honig0
Frank Apap0
Hershkop Shlomo0
Salvatore J. Stolfo0
Eleazar Eskin0
Date of Patent
November 4, 2008
Patent Application Number
10352343
Date Filed
January 27, 2003
Patent Citations Received
‌
US Patent 12130909 Enterprise search
0
‌
US Patent 11997113 Treating data flows differently based on level of interest
0
‌
US Patent 11997111 Attribute-controlled malware detection
0
‌
US Patent 12063229 System and method for associating cybersecurity intelligence to cyberthreat actors through a similarity matrix
0
‌
US Patent 12063243 Autonomous email report generator
0
‌
US Patent 12069073 Cyber threat defense system and method
0
‌
US Patent 12069087 System and method for analyzing binary code for malware classification using artificial neural network techniques
0
‌
US Patent 12074887 System and method for selectively processing content after identification and removal of malicious content
0
...
Patent Primary Examiner
‌
Christopher A Revak
Patent abstract

A method for detecting intrusions in the operation of a computer system is disclosed which comprises gathering features from records of normal processes that access the files system of the computer, such as the Windows registry, and generating a probabilistic model of normal computer system usage based on occurrences of said features. The features of a record of a process that accesses the Windows registry are analyzed to determine whether said access to the Windows registry is an anomaly. A system is disclosed, comprising a registry auditing module configured to gather records regarding processes that access the Windows registry; a model generator configured to generate a probabilistic model of normal computer system usage based on records of a plurality of processes that access the Windows registry and that are indicative of normal computer system usage; and a model comparator configured to determine whether the access of the Windows registry is an anomaly.

Timeline

No Timeline data yet.

Further Resources

Title
Author
Link
Type
Date
No Further Resources data yet.

References

Find more entities like US Patent 7448084 System and methods for detecting intrusions in a computer system by monitoring operating system registry accesses

Use the Golden Query Tool to find similar entities by any field in the Knowledge Graph, including industry, location, and more.
Open Query Tool
Access by API
Golden Query Tool
Golden logo

Company

  • Home
  • Press & Media
  • Blog
  • Careers
  • WE'RE HIRING

Products

  • Knowledge Graph
  • Query Tool
  • Data Requests
  • Knowledge Storage
  • API
  • Pricing
  • Enterprise
  • ChatGPT Plugin

Legal

  • Terms of Service
  • Enterprise Terms of Service
  • Privacy Policy

Help

  • Help center
  • API Documentation
  • Contact Us
By using this site, you agree to our Terms of Service.