会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明申请
    • Method and system for adaptive anomaly-based intrusion detection
    • 基于自适应异常入侵检测的方法和系统
    • US20110185422A1
    • 2011-07-28
    • US12692165
    • 2010-01-22
    • Syed Ali KhayamMuhammad Qasim Ali
    • Syed Ali KhayamMuhammad Qasim Ali
    • G06F11/00
    • H04L63/1425
    • The input characteristics of a real-time IDS change continuously with time therefore setting a rigid (time and behavior invariant) classification threshold limits the accuracy that the IDS can potentially achieve. A generic threshold tuning method and system is proposed which can adaptively tune the detection threshold of a real-time IDS in accordance with varying host and network behavior. The method and system perform statistical and information-theoretic analyses of network and host-based IDSs' anomaly based intrusions to reveal a consistent time correlation structure between benign activity periods which is used to predict future anomaly scores and to adapt an IDS' detection threshold accordingly.
    • 实时IDS的输入特性随着时间的推移而不断变化,从而设置了一个刚性(时间和行为不变)分类阈值,限制了IDS可能实现的准确性。 提出了一种通用的阈值调整方法和系统,可以根据不同的主机和网络行为自适应地调整实时IDS的检测阈值。 该方法和系统对网络和基于主机的IDS异常入侵进行统计和信息理论分析,以揭示用于预测未来异常得分的良性活动期间之间的一致的时间相关结构,并相应调整IDS检测阈值 。
    • 3. 发明授权
    • Method and system for adaptive anomaly-based intrusion detection
    • 基于自适应异常入侵检测的方法和系统
    • US08800036B2
    • 2014-08-05
    • US12692165
    • 2010-01-22
    • Syed Ali KhayamMuhammad Qasim Ali
    • Syed Ali KhayamMuhammad Qasim Ali
    • H04L29/06
    • H04L63/1425
    • The input characteristics of a real-time IDS change continuously with time therefore setting a rigid (time and behavior invariant) classification threshold limits the accuracy that the IDS can potentially achieve. A generic threshold tuning method and system is proposed which can adaptively tune the detection threshold of a real-time IDS in accordance with varying host and network behavior. The method and system perform statistical and information-theoretic analysis of network and host-based IDSs' anomaly based intrusions to reveal a consistent time correlation structure between benign activity periods which is used to predict future anomaly scores and to adapt an IDS' detection threshold accordingly.
    • 实时IDS的输入特性随着时间的推移而不断变化,从而设置了一个刚性(时间和行为不变)分类阈值,限制了IDS可能实现的准确性。 提出了一种通用的阈值调整方法和系统,可以根据不同的主机和网络行为自适应地调整实时IDS的检测阈值。 该方法和系统对网络和基于主机的IDS异常入侵进行统计和信息理论分析,以揭示用于预测未来异常评分的良性活动期间之间的一致时间相关结构,并相应调整IDS检测阈值 。