SYSTEMS AND METHODS FOR AUTOMATIC SNAPSHOTTING OF BACKUPS BASED ON MALICIOUS MODIFICATION DETECTION
Patent №
US 10,083,299
Granted
2018-09-25
Filed 2015
Owner
CARBONITE, INC.
Lab
—
AI components
2
planning · hardware
Assignment
Recorded
Dataset
AIPD
2023_r1 edition
Application
14971836
The present disclosure describes systems and methods for detection and mitigation of malicious activity regarding user data by a network backup system. In a first aspect, a backup system receiving and deduplicating backup data from a plurality of computing devices may detect, based on changes in uniqueness or shared rates for files, atypical modifications to common files, and may take steps to mitigate any potential attack by maintaining versions of the common files prior to the modifications or locking backup snapshots. In a second aspect, the backup system may monitor file modification behaviors on a single device, relative to practices of an aggregated plurality of devices. Upon detection of potentially malicious modification activity, a previously backed up or synchronized store of data may be locked and/or duplicated, preventing any of the malicious modifications from being transferred to the backup system.
AI classification
Ownership
CARBONITE, INC.
assignment · 373320822
Assignors
CROFTON, TEO WINTON, BAKER, CLARK MARSHALL
On an employer assignment, the assignors are typically the inventors.