Information security – Monitoring or scanning of software or data including attack... – Intrusion detection
Reexamination Certificate
2008-05-06
2008-05-06
Moazzami, Nasser (Department: 2136)
Information security
Monitoring or scanning of software or data including attack...
Intrusion detection
C726S022000, C726S026000, C713S188000, C709S224000
Reexamination Certificate
active
07370357
ABSTRACT:
A method for network intrusion detection on a network comprising a plurality of state machines for passing a plurality of network packets comprises determining frequency distributions for each transition within each state machine, determining the distributions of values of each state machine on each transition, and comparing the distributions to observed statistics in the network, and upon determining that the observed statistics are outside defined limits, detecting an anomaly.
REFERENCES:
patent: 6715084 (2004-03-01), Aaron et al.
patent: 6742124 (2004-05-01), Kilpatrick et al.
patent: 7024694 (2006-04-01), Ko
patent: 2003/0009699 (2003-01-01), Gupta et al.
Anderson, Debra, et al.,Next-Generation Intrusion Detection Expert System(NEDES)A Summary, SRI International, Computer Science Laboratory, SRI-CSL-95-07, May 1995.
Kumar, Sandeep,A Pattern Matching Model for Misuse Intrusion Detection, Department of Computer Sicences, Purdue University, National Computer Security Conference, 1994.
Lee, Wenke,Data Mining Approaches for Intrusion Detection, Computer Science Department, Columbia University, USENIX Security Symposium, 1998.
Sekar, R.,Synthesizing Fast Intrusion Prevention/Detection Systems from High-Level Specifications, State University of New York at Stony Brook, New York, USENIX Security Symposium, 1999.
Frank Chau & Associates, LLC
Moazzami Nasser
Research Foundation of the State University of New York
Yalew Fikremariam
LandOfFree
Specification-based anomaly detection does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Specification-based anomaly detection, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Specification-based anomaly detection will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-2771300