Patents by Inventor Weihan Jiang

Weihan Jiang has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20240430287
    Abstract: A system and method for locating DGA compromised IP addresses is provided. A domain name system (DNS) stream is received. The DNS stream is classified into DGA generated domains using a machine learning classifier to generate a classification output. User behavior profiling is performed to enhance the classification output. A verdict is generated based on the user behavior profiling of the classification output including identifying a compromised source IP address associated with a detected DGA malware attack.
    Type: Application
    Filed: September 9, 2024
    Publication date: December 26, 2024
    Inventors: Weihan Jiang, David Qianshan He, Xuya Jiang
  • Publication number: 20240414175
    Abstract: Techniques for unknown exploit detection using attack traffic analysis and real-time attack event streaming are disclosed. In some embodiments, a system/process/computer program product for exploit detection using attack traffic analysis and real-time attack event streaming includes receiving a stream that includes a plurality of attack events from a security platform at a cloud security service; generating a cluster of attack events from the stream; and tagging the cluster with an unknown attack pattern for further automated security analysis at the cloud security service, wherein the tagged unknown attack pattern cluster does not match a preexisting signature for a known attack pattern.
    Type: Application
    Filed: June 9, 2023
    Publication date: December 12, 2024
    Inventors: Weihan Jiang, Zhibin Zhang, Kenneth Hsu, Xuya Jiang, Hui Gao
  • Patent number: 12126639
    Abstract: A system and method for locating DGA compromised IP addresses is provided. A domain name system (DNS) stream is received. The DNS stream is classified into DGA generated domains using a machine learning classifier to generate a classification output. User behavior profiling is performed to enhance the classification output. A verdict is generated based on the user behavior profiling of the classification output including identifying a compromised source IP address associated with a detected DGA malware attack.
    Type: Grant
    Filed: May 3, 2022
    Date of Patent: October 22, 2024
    Assignee: Palo Alto Networks, Inc.
    Inventors: Weihan Jiang, David Qianshan He, Xuya Jiang
  • Publication number: 20230362176
    Abstract: A system and method for locating DGA compromised IP addresses is provided. A domain name system (DNS) stream is received. The DNS stream is classified into DGA generated domains using a machine learning classifier to generate a classification output. User behavior profiling is performed to enhance the classification output. A verdict is generated based on the user behavior profiling of the classification output including identifying a compromised source IP address associated with a detected DGA malware attack.
    Type: Application
    Filed: May 3, 2022
    Publication date: November 9, 2023
    Inventors: Weihan Jiang, David Qianshan He, Xuya Jiang
  • Publication number: 20230336528
    Abstract: A system and method for detecting dictionary-based DGA traffic is provided. A domain name system (DNS) stream is received. The DNS stream is classified using a per domain dictionary domain generation algorithm (DGA) classifier to generate candidate dictionary DGA domains with cluster information. The candidate dictionary DGA domains are filtered to generate a set of dictionary DGA domains. An action is performed based on a match with a monitored domain name of a monitored DNS request and a dictionary DGA domain of the set of dictionary DGA domains.
    Type: Application
    Filed: April 18, 2022
    Publication date: October 19, 2023
    Inventors: Janos Szurdi, Weihan Jiang, David Qianshan He