2018.11.20

MALICIOUS SOFTWARE RECOGNITION APPARATUS AND METHOD

United States

Overview

A malicious software recognition apparatus and method are provided. The malicious software recognition apparatus stores a training dataset, which includes a plurality of network flow datasets. Each network flow dataset corresponds to one of a plurality of software categories, and the software categories includes a plurality of malicious software categories. The malicious software recognition apparatus tests a malicious software recognition model and learns that a plurality of recognition accuracies of a subset of the malicious software categories are low, determines that an overlap degree of the network flow datasets corresponding to the subset is high, updates the software categories by combining the malicious software categories corresponding to the subset, updates the training set by integrating the network flow datasets corresponding to the subset, trains the malicious software recognition model according to the updated training set. The trained malicious software recognition model is deployed to the real world.

Category

資訊安全
內容安全及威脅管理
Appl. Type

發明

Status

Patented

Appl. No.

16/197,353

Patent No

US10,984,288B2

Filing Date

2018.11.20

Expired Date

2039.12.17

Notification

2020.10.20