ForeScout Technologies has patented a method to analyze network traffic using name translation information. By associating devices with name information, the system can detect potential compromises. This technology enhances network security by identifying threats based on traffic analysis. GlobalData’s report on ForeScout Technologies gives a 360-degree view of the company including its patenting strategy. Buy the report here.

According to GlobalData’s company profile on ForeScout Technologies, was a key innovation area identified from patents. ForeScout Technologies's grant share as of February 2024 was 66%. Grant share is based on the ratio of number of grants to total number of patents.

Analyzing network traffic based on naming information

Source: United States Patent and Trademark Office (USPTO). Credit: ForeScout Technologies Inc

A recently granted patent (Publication Number: US11916943B2) outlines a method for monitoring network traffic and detecting potential compromises in devices within a network. The method involves accessing name translation traffic from an intermediate translation device acting as a local cache, extracting name and address information, storing this data, and associating subsequent network traffic with the stored information. By matching address information in the network traffic with the stored data, the method can determine if a device has been compromised and classify the device based on the extracted information. Additionally, the patent describes determining indications of intrusion and session classifications based on the name information obtained.

Furthermore, the patent details a system and a non-transitory computer-readable medium that implement the method described. The system includes a processing device that accesses domain name system (DNS) responses and IP addresses, matches them with incoming network packets, and determines security characteristics of devices based on the extracted information. The system can also access time-related data associated with the DNS responses and classify devices based on device classification or session classification. The non-transitory computer-readable medium contains instructions for executing the method, including monitoring network traffic, matching addresses, and determining compromise indications based on the extracted name information. Overall, the patent provides a comprehensive approach to monitoring network traffic, detecting compromises, and classifying devices within a network based on name translation traffic.

To know more about GlobalData’s detailed insights on ForeScout Technologies, buy the report here.

Premium Insights

From

The gold standard of business intelligence.

Blending expert knowledge with cutting-edge technology, GlobalData’s unrivalled proprietary data will enable you to decode what’s happening in your market. You can make better informed decisions and gain a future-proof advantage over your competitors.

GlobalData

GlobalData, the leading provider of industry intelligence, provided the underlying data, research, and analysis used to produce this article.

GlobalData Patent Analytics tracks bibliographic data, legal events data, point in time patent ownerships, and backward and forward citations from global patenting offices. Textual analysis and official patent classifications are used to group patents into key thematic areas and link them to specific companies across the world’s largest industries.