Patent · US Active

System, method, and computer software code for detecting a computer network intrusion in an infrastructure element of a high value target

US8621629B2 · kind B2 · utility

3Cited by
6References
22Claims
0Family size

Assignee

Inventors

Key dates

Filing dateAug 31, 2010
Grant dateDec 31, 2013
Priority date
Expiry dateFeb 13, 2031

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/1416
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

An intrusion detection system for detecting and defeating unauthorized intrusion within a computer network of an infrastructure element of a high value target, the system including a pre-processor configured to receive data from a computer network of an infrastructure element of a high value target and to output filtered data, a grammar applicator configured to apply grammars produced using a grammar based compression and learning algorithm to the filtered data, a decision making device configured to provide a recommendation based on an input from the grammar applicator as to whether the data in the computer network constitutes an unauthorized intrusion, and an emulator in communication with the decision making device configured to expand a sampling of the filtered data using a polymorphic transformation to allow the decision making device to further analyze the sampled data to determine an unauthorized intrusion. A method and a computer software code are also disclosed.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.