← USPTO Patent Applications

DEVICE, SYSTEM, METHOD, AND COMPUTER PROGRAM FOR INFERRING ATTACKER GROUP

Application US20260080059A1 Kind: A1 Mar 19, 2026

Assignee

S2W INC.

Inventors

Jae Ki KIM, Hyung Suk KIM, Seung Hoe KIM

Abstract

Provided are a device, system, method, and computer program for inferring an attacker group by analyzing malicious code. The system includes a sandbox pool manager configured to allocate analysis target files for inferring an attacker group to one or more nodes and separately execute the analysis target files in separate malicious code analysis environments by controlling each node, an event manager configured to determine in real time whether all events related to the analysis target files have been collected on the basis of running state information of each node and collect events which are recorded in the malicious code analysis environments of each of the nodes and related to the analysis target files, an attacker group inference part configured to infer an attacker group by analyzing the collected events, and an analysis result provider configured to provide information on the inferred attacker group.

CPC Classifications

G06F 21/565 H04L 63/1416

Filing Date

2024-11-27

Application No.

18961974