Information security – Monitoring or scanning of software or data including attack... – Intrusion detection
Reexamination Certificate
2004-01-13
2009-06-30
Lanier, Benjamin E (Department: 2432)
Information security
Monitoring or scanning of software or data including attack...
Intrusion detection
Reexamination Certificate
active
07555777
ABSTRACT:
A method and apparatus for facilitating reduction in successful attacks on a monitored data processing system, such as a host computer. An intrusion detection system comprises a host or application based sensor for detecting code based intrusions with a relatively low false-positive rate. Malicious code strings related to a detected intrusion are identified, extracted and forwarded to a pattern filter located in the monitored data processing system to prevent further intrusions using said malicious code strings. The malicious code strings may be forwarded to a response server for assembling sets of similar malicious code strings for which signatures are generated to permit identification of all malicious code strings contained in a set. The generated signatures are then distributed to monitored and/or monitoring systems of a protected network to prevent further intrusions using the malicious code strings and variations thereof.
REFERENCES:
patent: 6016546 (2000-01-01), Kephart et al.
patent: 6374241 (2002-04-01), Lamburt et al.
patent: 6735703 (2004-05-01), Kilpatrick et al.
patent: 7043757 (2006-05-01), Hoefelmeyer et al.
patent: 7093239 (2006-08-01), van der Made
patent: 7260725 (2007-08-01), Carmona et al.
patent: 2003/0014667 (2003-01-01), Kolichtchak
patent: 2005/0022018 (2005-01-01), Szor
patent: 2007/0058551 (2007-03-01), Brusotti et al.
Swimmer Morton D.
Wespi Andreas
Zamboni Diego M.
Almeida Devin
Dougherty Anne Vachon
International Business Machines - Corporation
Kaufman Stephen C.
Lanier Benjamin E
LandOfFree
Preventing attacks in a data processing system does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Preventing attacks in a data processing system, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Preventing attacks in a data processing system will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-4146856