METHOD AND SYSTEM FOR GENERATING THE LIST OF COMPROMISE INDICATORS Russian patent published in 2021 - IPC G06F21/56 

Abstract RU 2743619 C1

FIELD: computer engineering.

SUBSTANCE: computer-implemented method for generating the list of indicators of compromise, wherein a malware carrier is obtained, intended for preparing for the launch and / or launch of at least one primary malware module, an attack roadmap is developed by detecting additional malware carriers and / or the principal malware module and the sequence of their execution is determined, stipulated by the execution algorithm of the obtained malware carrier. At least one attack roadmap is found in the database, which coincides with the developed roadmap with the preset level of accuracy; the lists of indicators of compromise are extracted from the database for each malware carrier and / or the primary malware module from at least one found attack roadmap. The complete list of indicators of compromise is generated based on the compiled lists of indicators of compromise and the records of combined lists of compromise indicators extracted from the database; the compiled lists of compromise indicators are saved for each detected malware carrier or the primary malware module, as well as the complete list of compromise indicators in the database.

EFFECT: ensured countermeasures against advanced attacks on the network infrastructure.

14 cl. 7 dwg

Similar patents RU2743619C1

Title Year Author Number
SYSTEM AND METHOD FOR OUTSIDE CONTROL OF THE CYBERATTACK SURFACE 2021
  • Bobak Tim Dzhon Oskar
  • Volkov Dmitrij Aleksandrovich
RU2778635C1
METHOD FOR DETECTING UNAUTHORIZED AND FAKE Wi-Fi ACCESS POINTS 2023
  • Burenok Dmitrij Sergeevich
RU2810111C1
METHOD FOR IDENTIFYING INFORMATION SECURITY THREATS (OPTIONS) 2023
  • Sergeev Viktor Gennadevich
  • Skablonskii Andrei Vadimovich
  • Vorontsov Dmitrii Viktorovich
  • Spravtsev Iurii Vladimirovich
RU2802539C1
METHOD AND SYSTEM FOR PREVENTING UNAUTHORIZED ACCESS TO CORPORATE NETWORK OBJECTS 2022
  • Balashov Aleksandr Viktorovich
  • Cherepanov Pavel
  • Nagornov Ivan Grigorevich
  • Glazunov Nikita Sergeevich
  • Solomatin Aleksandr Igorevich
RU2799117C1
METHOD AND SYSTEM FOR PREVENTING COMPROMISE OF NETWORK INFRASTRUCTURE OBJECTS IN FREEIPA DIRECTORY SERVICE 2023
  • Balashov Aleksandr Viktorovich
  • Cherepanov Pavel
  • Nagornov Ivan Grigorevich
RU2826430C1
SYSTEM AND METHOD FOR ACTIVE DETECTION OF MALICIOUS NETWORK RESOURCES 2021
  • Volkov Dmitrij Aleksandrovich
  • Prudkovskij Nikolaj Sergeevich
RU2769075C1
INTELLIGENT CONTROL SYSTEM FOR CYBERTHREATS 2019
  • Ryupichev Dmitrij Yurevich
  • Novikov Evgenij Aleksandrovich
  • Nichiporchuk Maksim Mikhajlovich
RU2702269C1
SYSTEM AND METHOD OF DETECTING THE SIGNS OF COMPUTER ATTACKS 2017
  • Gordejchik Sergej Vladimirovich
  • Sapronov Konstantin Vladimirovich
  • Parshin Yurij Gennadevich
  • Kheirkhabarov Tejmur Samedovich
  • Soldatov Sergej Vladimirovich
RU2661533C1
METHOD OF COMBINING LARGE LANGUAGE MODEL AND SECURITY AGENT 2023
  • Sergeev Viktor Gennadevich
  • Tushkanov Vladislav Nikolaevich
RU2825975C1
METHOD OF USING LARGE LANGUAGE MODELS WHEN RESPONDING TO INFORMATION SECURITY INCIDENTS 2023
  • Sergeev Viktor Gennadevich
RU2825972C1

RU 2 743 619 C1

Authors

Pomerantsev Ilya Sergeevich

Dates

2021-02-20Published

2020-08-06Filed