×

Active defense method on the basis of cloud security

  • US 9,177,141 B2
  • Filed: 08/08/2011
  • Issued: 11/03/2015
  • Est. Priority Date: 08/18/2010
  • Status: Active Grant
First Claim
Patent Images

1. An active defense method based on cloud security, comprising:

  • recording a black/white list in a database, which black/white list including different program features and corresponding program behaviors;

    receiving at least one program behavior and a program feature of a program from a client;

    comparing the received program feature/program behavior with the recorded program feature/program behavior in the database, and making a determination on the program based on the comparison result;

    feeding back the determination result to the client;

    wherein, said method further comprisingbased on the program features and the corresponding program behaviors thereof in the black/white list, performing an analysis of unknown program features and program behaviors of a first program and a second program to update the black/white list comprisingestablishing an associated relationship between the first program and the second program based on their program features and their program behaviors;

    when a program behavior of the first program is included into the black/white list, updating the black/white list by;

    adding a program feature of the first program that corresponds to the program behavior of the first program to the black/white list, andadding a program behavior and a program feature of the second program into the black/white list based on the associated relationship between the first program and the second program; and

    /orwhen a program feature of the first program is included into the black/white list, updating the black/white list by;

    adding a program behavior of the first program that corresponds to the program feature of the first program to the black/white list, andadding the program behavior and the program feature of the second program to the black/white list based on the associated relationship between the first program and the second program.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×