{"schema_version":"1.0","canonical_url":"https://patentable.app/patents/US-9602533","patent":{"patent_number":"US-9602533","title":"Detecting network reconnaissance by tracking intranet dark-net communications","assignee":null,"inventors":[],"filing_date":"2015-03-10T00:00:00.000Z","publication_date":"2017-03-21T00:00:00.000Z","cpc_codes":["H04L","H04L","H04L"],"num_claims":20,"abstract":"A method and system for detecting network reconnaissance is disclosed wherein network traffic can be parsed into unidirectional flows that correspond to sessions. A learning module may categorize computing entities inside the network into assets and generate asset data to monitor the computing entities. If one or more computing entities address a flow to an address of a host that no longer exists, ghost asset data may be recorded and updated in the asset data. When a computing entity inside the network contacts an object in the dark-net, the computing entity may be recorded a potential mapper. When the computing entity tries to contact a number of objects in the dark-net, such that a computed threshold is exceeded, the computing entity is identified a malicious entity performing network reconnaissance."},"analysis":{"summary":null,"layman_explanation":null,"technical_analysis":null,"business_analysis":null,"faqs":null,"topics":[],"tech_cluster":null},"seo":{"title":"Detecting network reconnaissance by tracking intranet dark-net communications","description":"A method and system for detecting network reconnaissance is disclosed wherein network traffic can be parsed into unidirectional flows that correspond to sessions. A learning module may categorize comp","keywords":[]},"attribution":{"source":"Patentable","source_url":"https://patentable.app","canonical_url":"https://patentable.app/patents/US-9602533","license":"CC-BY-4.0-like","license_terms":"AI-generated analysis on this page (summary, layman_explanation, technical_analysis, business_analysis, faqs) may be reused with attribution and a visible link back to the canonical URL above. Patent abstracts, claims, and bibliographic data are USPTO public domain.","required_link":"https://patentable.app/patents/US-9602533","citation_suggestion":"Patentable. \"Detecting network reconnaissance by tracking intranet dark-net communications\" (US-9602533). https://patentable.app/patents/US-9602533","copyright_holder":"Nomic Interactive Technology LLC"},"links":{"html":"https://patentable.app/patents/US-9602533","json":"https://patentable.app/api/llm-context/US-9602533","site":"https://patentable.app","llms_txt":"https://patentable.app/llms.txt"},"generated_at":"2026-06-06T09:00:27.424Z"}