Abstract: A method for automated ransomware identification includes receiving a first series of data items for backup from a host system, identifying, using a heuristic, a first characteristic of the first series of data items, receiving a second series of data items for backup from the host system, identifying, using the heuristic, a second characteristic of the second series of data items, detecting that the second characteristic differs from the first characteristic in a manner consistent with a ransomware infection, and invoking a recovery procedure responsive to the detecting.
Type:
Grant
Filed:
January 10, 2019
Date of Patent:
September 7, 2021
Assignee:
KASEYA US LLC
Inventors:
Karl Edward Brewer, Oscar Rudolph McNeese, Jr., Sameer Prakash Kamat