US 12,244,624 B2
Malware detection at endpoint devices
Ricardo Varanda, Reading (GB)
Assigned to Bank of America Corporation, Charlotte, NC (US)
Filed by Bank of America Corporation, Charlotte, NC (US)
Filed on Oct. 16, 2023, as Appl. No. 18/380,339.
Application 18/380,339 is a continuation of application No. 17/141,685, filed on Jan. 5, 2021, granted, now 11,824,878.
Prior Publication US 2024/0039942 A1, Feb. 1, 2024
This patent is subject to a terminal disclaimer.
Int. Cl. H04L 9/40 (2022.01)
CPC H04L 63/1425 (2013.01) [H04L 63/1433 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A computing platform, comprising:
at least one processor;
a communication interface communicatively coupled to the at least one processor; and
memory storing computer-readable instructions that, when executed by the at least one processor, cause the computing platform to:
send, via the communication interface, to a browser extension on a computing device, rule information including a set of rules defining reportable behavior of network traffic associated with a website;
receive, via the communication interface, from the browser extension on the computing device, report information, wherein the report information includes an identification of a loaded web page associated with the website that exhibits the reportable behavior defined by at least one rule of the set of rules in the rule information, an indication that the loaded web page associated with the website is transmitting information using an insecure security protocol, and an indication of which rules of the set of rules have been met;
based on receiving the report information, assign a risk score for the identified loaded web page, wherein the risk score is assigned based on points that are allocated to the reportable behavior exhibited by the website associated with the identified loaded web page;
determine that the risk score is above a predetermined threshold, wherein the predetermined threshold is adjusted for the identified loaded web page; and
in response to determining that the risk score is above the predetermined threshold, send, via the communication interface, to the browser extension on the computing device, one or more commands directing the browser extension on the computing device to close the identified loaded web page.