← USPTO Patent Grants

Detecting malicious command and control cloud traffic

Grant US12592959B2 Kind: B2 Mar 31, 2026

Assignee

Netskope, Inc.

Inventors

Dagmawi Mulugeta, Raymond Joseph Canzanese, Jr., Colin Estep, Siying Yang, Jenko Hwong, Gustavo Palazolo Eiras, Yongxing Wang

Abstract

The technology disclosed relates to a method, system, and non-transitory computer-readable media that detects malicious communication between a command and control (C2) cloud resource on a cloud application and malware on an infected host, using a network security system. The network security system reroutes the cloud traffic to the network security system. The incoming requests of the cloud traffic are directed to a cloud application in the plurality of cloud applications, and wherein the cloud application has a plurality of resources. The network security system analyzes the incoming requests, determines that the incoming requests are targeted at one or more malicious resources in the plurality of resources. Also, the network security system prevents transmission of the incoming requests to the malicious resources, by making the malicious resources unavailable for receiving future incoming requests, while keeping other resources in the plurality of resources available for receiving the future incoming requests.

CPC Classifications

H04L 63/1441 H04L 63/029 H04L 63/0884 H04L 63/18 H04L 63/30 H04L 63/0272 H04L 63/1408 H04L 63/1416 H04L 63/1425 H04L 63/145 H04L 63/168

Filing Date

2023-06-23

Application No.

18340076

Claims

20