SYSTEMS AND METHODS FOR ATTRIBUTING POTENTIALLY MALICIOUS EMAIL CAMPAIGNS TO KNOWN THREAT GROUPS
Patent №
US 9,548,988
Granted
2017-01-17
Filed 2014
Owner
SYMANTEC CORPORATION
Lab
—
AI components
4
nlp · kr · planning · hardware
Assignment
Recorded
Dataset
AIPD
2023_r1 edition
Application
14461810
The disclosed computer-implemented method for attributing potentially malicious email campaigns to known threat groups may include (1) identifying a potentially malicious email campaign targeting at least one organization, (2) detecting, within the potentially malicious email campaign, an incriminating feature that has been linked to a known threat group, (3) determining, based at least in part on detecting the incriminating feature linked to the known threat group, that the known threat group is likely responsible for the potentially malicious email campaign, and then in response to determining that the known threat group is likely responsible for the potentially malicious email campaign, (4) attributing the potentially malicious email campaign to the known threat group. Various other methods, systems, and computer-readable media are also disclosed.
AI classification
Ownership
SYMANTEC CORPORATION
assignment · 335540319
Assignors
ROUNDY, KEVIN ALEJANDRO, THONNARD, OLIVIER
On an employer assignment, the assignors are typically the inventors.