Patent · US Active

Correlation engine for detecting network attacks and detection method

US8024804B2 · kind B2 · utility

24Cited by
6References
47Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMar 8, 2006
Grant dateSep 20, 2011
Priority date
Expiry dateNov 8, 2028

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F21/552
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

A method for detecting network attacks is provided. In one implementation, the method receives a plurality of attack indications based on data transmitted on the network and applies rules to the plurality of attack indications. Also, the method generates an alert if an application of at least a subset of the rules on the plurality of attack indications indicates a potential attack. In addition, a network device that performs the method and a computer program corresponding to the method are provided.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.