Specification-based anomaly detection

Information security – Monitoring or scanning of software or data including attack... – Intrusion detection

Reexamination Certificate

Rate now

  [ 0.00 ] – not rated yet Voters 0   Comments 0

Details

C726S022000, C726S026000, C713S188000, C709S224000

Reexamination Certificate

active

07370357

ABSTRACT:
A method for network intrusion detection on a network comprising a plurality of state machines for passing a plurality of network packets comprises determining frequency distributions for each transition within each state machine, determining the distributions of values of each state machine on each transition, and comparing the distributions to observed statistics in the network, and upon determining that the observed statistics are outside defined limits, detecting an anomaly.

REFERENCES:
patent: 6715084 (2004-03-01), Aaron et al.
patent: 6742124 (2004-05-01), Kilpatrick et al.
patent: 7024694 (2006-04-01), Ko
patent: 2003/0009699 (2003-01-01), Gupta et al.
Anderson, Debra, et al.,Next-Generation Intrusion Detection Expert System(NEDES)A Summary, SRI International, Computer Science Laboratory, SRI-CSL-95-07, May 1995.
Kumar, Sandeep,A Pattern Matching Model for Misuse Intrusion Detection, Department of Computer Sicences, Purdue University, National Computer Security Conference, 1994.
Lee, Wenke,Data Mining Approaches for Intrusion Detection, Computer Science Department, Columbia University, USENIX Security Symposium, 1998.
Sekar, R.,Synthesizing Fast Intrusion Prevention/Detection Systems from High-Level Specifications, State University of New York at Stony Brook, New York, USENIX Security Symposium, 1999.

LandOfFree

Say what you really think

Search LandOfFree.com for the USA inventors and patents. Rate them and share your experience with other people.

Rating

Specification-based anomaly detection does not yet have a rating. At this time, there are no reviews or comments for this patent.

If you have personal experience with Specification-based anomaly detection, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Specification-based anomaly detection will most certainly appreciate the feedback.

Rate now

     

Profile ID: LFUS-PAI-O-2771300

  Search
All data on this website is collected from public sources. Our data reflects the most accurate information available at the time of publication.