会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 2. 发明授权
    • System and method for detection and mitigation of network worms
    • 用于网络蠕虫检测和减轻的系统和方法
    • US08161554B2
    • 2012-04-17
    • US11114575
    • 2005-04-26
    • Karthikeyan M. SadhasivamShuguang ZhangRavi K. Varanasi
    • Karthikeyan M. SadhasivamShuguang ZhangRavi K. Varanasi
    • G06F11/00
    • H04L63/1425H04L63/145
    • An intrusion detection system for a computer network includes a knowledge database that contains a baseline of normal host behavior, and a correlation engine that monitors network activity with reference to the knowledge database. The correlation engine accumulating information about anomalous events occurring on the network and then periodically correlating the anomalous events. The correlation engine generates a worm outbreak alarm when a certain number of hosts exhibit a role-reversal behavior. It is emphasized that this abstract is provided to comply with the rules requiring an abstract that will allow a searcher or other reader to quickly ascertain the subject matter of the technical disclosure. It is submitted with the understanding that it will not be used to interpret or limit the scope or meaning of the claims. 37 CFR 1.72(b).
    • 用于计算机网络的入侵检测系统包括包含正常主机行为的基准的知识数据库,以及参考知识数据库来监视网络活动的相关引擎。 相关引擎累积关于在网络上发生的异常事件的信息,然后周期性地关联异常事件。 当一定数量的主机出现角色反转行为时,相关引擎会生成蠕虫爆发警报。 要强调的是,该摘要被提供以符合要求抽象的规则,允许搜索者或其他读者快速确定技术公开内容的主题。 提交它的理解是,它不会用于解释或限制权利要求的范围或含义。 37 CFR 1.72(b)。