Mandiant, Inc.
System and method for virtual analysis of network data
Last updated:
Abstract:
A system is provided with one or more virtual machines and a replayer. The virtual machine(s) are configured to mimic operations of a first device. The replayer is configured to mimic operations of a second device. Herein, the replayer receives a portion of network data under analysis, dynamically modifies the portion of the network data, and transmits the modified portion of the network data to at least one virtual machine of the one or more virtual machines in accordance with a protocol sequence utilized between the first device and the second device.
Status:
Grant
Type:
Utility
Filling date:
5 Mar 2018
Issue date:
14 Apr 2020