Patents by Inventor Chan Jin HAO

Chan Jin HAO has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 11436499
    Abstract: System and method for detecting domain names that exhibit Domain Generation Algorithm (DGA) like behaviours from a stream of Domain Name System (DNS) records. In particular, this document describes a system comprising a deep learning classifier (DL-C) module for receiving and filtering the stream of DNS records before the filtered DNS records, which have been determined to possess domain names that exhibit DGA behaviour are provided to a series filter-classifier (SFC) module. The SFC module then groups the records into various series based on source IP, destination IP and time. For each series, it then filters away records that do not exhibit the dominant DGA characteristics of the series. Finally, for each series, it makes use of the remaining DNS records' timestamps to generate a time series of DGA occurrences and then, using this time series of occurrences, determine the number of DGA bursts throughout the time period of analysis.
    Type: Grant
    Filed: December 16, 2021
    Date of Patent: September 6, 2022
    Assignee: Ensign InfoSecurity Pte. Ltd.
    Inventors: Lee Joon Sern, Gui Peng David Yam, Quek Han Yang, Chan Jin Hao
  • Patent number: 11438356
    Abstract: This document discloses a system and method for detecting and classifying potential malicious network behaviours or characteristics contained within data traffic. In particular, this document discloses a system comprising a data pre-processing module for processing the received data traffic before the processed data traffic is provided to an alert module communicatively connected to the data pre-processing module. The alert module, which comprises a trained autoencoder and a classifier neural network trained via self-taught learning, then determines, based on a set of partially labelled training data, whether potential malicious network behaviours that typically present themselves as network traffic anomalies are contained within the processed data traffic.
    Type: Grant
    Filed: September 1, 2021
    Date of Patent: September 6, 2022
    Assignee: Ensign InfoSecurity Ptd. Ltd.
    Inventors: Lee Joon Sern, Quek Hanyang, Chan Jin Hao
  • Publication number: 20220245461
    Abstract: This document describes a system and method for detecting domain names that exhibit Domain Generation Algorithm (DGA) like behaviours from a stream of Domain Name System (DNS) records. In particular, this document describes a system comprising a deep learning classifier (DL-C) module for receiving and filtering the stream of DNS records before the filtered DNS records, which have been determined to possess domain names that exhibit DGA behaviour are provided to a series filter-classifier (SFC) module. The SFC module then groups the records into various series based on source IP, destination IP and time. For each series, it then filters away records that do not exhibit the dominant DGA characteristics of the series. Finally, for each series, it makes use of the remaining DNS records' timestamps to generate a time series of DGA occurrences and then, using this time series of occurrences, determine the number of DGA bursts throughout the time period of analysis.
    Type: Application
    Filed: December 16, 2021
    Publication date: August 4, 2022
    Inventors: Lee Joon Sern, Gui Peng David Yam, Quek Han Yang, Chan Jin Hao
  • Publication number: 20220070195
    Abstract: This document discloses a system and method for detecting and classifying potential malicious network behaviours or characteristics contained within data traffic. In particular, this document discloses a system comprising a data pre-processing module for processing the received data traffic before the processed data traffic is provided to an alert module communicatively connected to the data pre-processing module. The alert module, which comprises a trained autoencoder and a classifier neural network trained via self-taught learning, then determines, based on a set of partially labelled training data, whether potential malicious network behaviours that typically present themselves as network traffic anomalies are contained within the processed data traffic.
    Type: Application
    Filed: September 1, 2021
    Publication date: March 3, 2022
    Inventors: Lee Joon SERN, Quek HANYANG, Chan Jin HAO