Zscaler, Inc.
Machine learning to determine command and control sites

Last updated:

Abstract:

Systems and methods include receiving a domain for a determination of a likelihood the domain is a command and control site; analyzing the domain with an ensemble of a plurality of trained machine learning models including a Uniform Resource Locator (URL) model that analyzes lexical features of a hostname of the domain and an artifact model that analyzes content features of a webpage associated with the domain; and combining results of the ensemble to predict the likelihood the domain is a command and control site.

Status:
Application
Type:

Utility

Filling date:

8 Jun 2021

Issue date:

2 Dec 2021