Isolation of Malware using SDN
This invention provides a basis for malware deception product/service, in which compromised hosts are transferred to a honeynet environment in order to a) isolate them from production hosts and data, and (b) learn the adversary's TPP (tactics, techniques, and procedures), and c) develop IOCs (indicators of compromise).
Published: 11/6/2017   |   Inventor(s): Brian Hay, Amr Abed, Tohru Shiminaka
Category(s): Communication, Computer Software