Master ledger and local host log extension detection and mitigation of forged authentication attacks
Assignee
QOMPLX LLC
Inventors
Jason Crabtree, Richard Kelley
Abstract
A system and method for implementation of zero trust computer network security combined with stateful authentication object tracking, authentication object manipulation and forgery detection, and assessment of authentication and identity attack surface. The methodology involves gathering all authentication objects issued by a network, storing the authentication objects in a master ledger for use in stateful deterministic authentication object tracking, and running detection functions that compare authentication objects presented for access to network resources with the master ledger. In an embodiment, an authentication object agent is installed at the domain controller level. In another embodiment, a log extension utility is installed at the local host computer level to provide additional log data for additional cyberattack detections.
CPC Classifications
Filing Date
2023-07-29
Application No.
18361825
Claims
16