[go: up one dir, main page]

GB2499930A - Detecting a suspicious entity in a communication network - Google Patents

Detecting a suspicious entity in a communication network Download PDF

Info

Publication number
GB2499930A
GB2499930A GB1308554.3A GB201308554A GB2499930A GB 2499930 A GB2499930 A GB 2499930A GB 201308554 A GB201308554 A GB 201308554A GB 2499930 A GB2499930 A GB 2499930A
Authority
GB
United Kingdom
Prior art keywords
suspicious entity
detecting
communication network
receiving device
user identity
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Withdrawn
Application number
GB1308554.3A
Other versions
GB201308554D0 (en
Inventor
Jarno Niemela
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
WithSecure Oyj
Original Assignee
F Secure Oyj
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by F Secure Oyj filed Critical F Secure Oyj
Priority claimed from PCT/EP2011/070492 external-priority patent/WO2012079912A1/en
Publication of GB201308554D0 publication Critical patent/GB201308554D0/en
Publication of GB2499930A publication Critical patent/GB2499930A/en
Withdrawn legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L51/00User-to-user messaging in packet-switching networks, transmitted according to store-and-forward or real-time protocols, e.g. e-mail
    • H04L51/21Monitoring or handling of messages
    • H04L51/212Monitoring or handling of messages using filtering or selective blocking
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/12Applying verification of the received information
    • H04L63/126Applying verification of the received information the source of the received data
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1441Countermeasures against malicious traffic
    • H04L63/1483Countermeasures against malicious traffic service impersonation, e.g. phishing, pharming or web spoofing

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Computer And Data Communications (AREA)

Abstract

A method and apparatus for detecting a suspicious entity in a communication network. A receiving device receives a message from a sender. A processor obtains domain information or a user identity, and further contact information from data contained in the message. A reputation query message is sent to a Network Reputation Server (NRS), the reputation query message including the domain information or user identity. A reply is received from the NRS that indicates that the domain information or user identity is related to a suspicious entity. The receiving device then associates the contact information with the suspicious entity. In this way, if a user of the receiving device attempts to use the contact information, they can be prevented from doing this or informed that it relates to a suspicious entity.
GB1308554.3A 2010-12-14 2011-11-18 Detecting a suspicious entity in a communication network Withdrawn GB2499930A (en)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
US98253210 2010-12-14
PCT/EP2011/070492 WO2012079912A1 (en) 2010-12-14 2011-11-18 Detecting a suspicious entity in a communication network

Publications (2)

Publication Number Publication Date
GB201308554D0 GB201308554D0 (en) 2013-06-19
GB2499930A true GB2499930A (en) 2013-09-04

Family

ID=48672217

Family Applications (1)

Application Number Title Priority Date Filing Date
GB1308554.3A Withdrawn GB2499930A (en) 2010-12-14 2011-11-18 Detecting a suspicious entity in a communication network

Country Status (1)

Country Link
GB (1) GB2499930A (en)

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20050015626A1 (en) * 2003-07-15 2005-01-20 Chasin C. Scott System and method for identifying and filtering junk e-mail messages or spam based on URL content
US20070130351A1 (en) * 2005-06-02 2007-06-07 Secure Computing Corporation Aggregation of Reputation Data
US20090182818A1 (en) * 2008-01-11 2009-07-16 Fortinet, Inc. A Delaware Corporation Heuristic detection of probable misspelled addresses in electronic communications

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20050015626A1 (en) * 2003-07-15 2005-01-20 Chasin C. Scott System and method for identifying and filtering junk e-mail messages or spam based on URL content
US20070130351A1 (en) * 2005-06-02 2007-06-07 Secure Computing Corporation Aggregation of Reputation Data
US20090182818A1 (en) * 2008-01-11 2009-07-16 Fortinet, Inc. A Delaware Corporation Heuristic detection of probable misspelled addresses in electronic communications

Also Published As

Publication number Publication date
GB201308554D0 (en) 2013-06-19

Similar Documents

Publication Publication Date Title
GB2505123A (en) Social media identity discovery and mapping
PH12014501310A1 (en) Method, system, network server and storage medium for anonymous dating
WO2012082919A3 (en) Method and device for authentication of service requests
WO2013003493A3 (en) System and method for protocol fingerprinting and reputation correlation
ATE479259T1 (en) DELIVERY OF EMAIL MESSAGES IN MULTIPLE PARTS
GB2557476A (en) Enhanced push messaging
GB201116448D0 (en) Image-processing system and image processing method
IN2014DN08257A (en)
WO2011112937A3 (en) Systems and methods for improved content delivery to mobile communication devices
WO2010144207A3 (en) Method and apparatus for processing authentication request message in a social network
PH12018501970A1 (en) Message anti-forgery implementation method and device
GB201209044D0 (en) Identifying and locating users on a mobile network
IN2014KN01388A (en)
MX2015008940A (en) Instant communication method and device.
WO2012081886A3 (en) Method and system for recalling a voice mail
EP2388969A3 (en) Method of registering devices
EP2698967A8 (en) Social network data mining method for terminal user, and relevant method, device and system
TW201613380A (en) Communication method, apparatus, and system
JP2016509282A5 (en)
GB2494920B (en) Network connection method
MY172783A (en) Application popularization method, device and system
MX2015005922A (en) Contact matching method, instant messaging client, server and system.
GB2547796A (en) Audio messaging by touching a contact on the touch screen
TW200620936A (en) Relay device, authentication server and the method of authentication
WO2014205331A3 (en) System and method for generating and transmitting data without personally identifiable information

Legal Events

Date Code Title Description
WAP Application withdrawn, taken to be withdrawn or refused ** after publication under section 16(1)