Patent · US Active

Network traffic correlation engine

US12267348B2 · kind B2 · utility

0Cited by
31References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateDec 18, 2023
Grant dateApr 1, 2025
Priority date
Expiry dateDec 18, 2043

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/1408
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A network traffic correlation engine monitors inbound and/or outbound connection information received from on each host computer system on a network. Each host device on the network store data logs corresponding to information corresponding to communications sent by the device and received by the device. The network traffic correlation engine correlates connections between different hosts throughout the network. If the network traffic correlation engine identified unmatched outbound and inbound connections, the network traffic correlation engine generates an alert to initiate further investigation and may also provide a mapping of the communications showing a possible start device for the connection and/or a type of access that the connections may now be providing.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.