| CPC H04L 63/1425 (2013.01) [G06F 16/9574 (2019.01); H04L 63/1416 (2013.01)] | 15 Claims |

|
1. A computer-implemented method comprising:
determining one or more features of a connected device;
subsequent to determining the one or more features, generating a set of websites that may subsequently be accessed by the connected device based on the one or more features;
subsequent to generating the set of websites, obtaining reputation data for the set of websites from a remote source;
storing, by a customer premises equipment (CPE), the reputation data for the set of websites into a cache;
subsequent to storing the reputation data, intercepting, by the CPE, network traffic between the connected device and an accessed website;
retrieving, by the CPE, reputation data for the accessed website from the cache based on the network traffic; and
performing, by the CPE, a cybersecurity operation related to the connected device based on the reputation data for the accessed website;
wherein the one or more features of the connected device comprise at least one of a type of the connected device, a model of the connected device, an application installed on the connected device, an application executing on the connected device, or a user profile associated with the connected device, wherein the user profile comprises information that identifies one or more of a demographic feature of the user or an interest group of the user.
|