首页> 外国专利> System for intrusion detection and vulnerability assessment in a computer network using simulation and machine learning

System for intrusion detection and vulnerability assessment in a computer network using simulation and machine learning

机译:使用模拟和机器学习的计算机网络中的入侵检测和漏洞评估系统

摘要

The present invention provides a system and method for predicting and preventing unauthorized intrusion in a computer configuration. Preferably, the invention comprises a communication network to which at least two computing devices connect, wherein at least one of the computing devices is operable to receive data transmitted by the other computing device. The invention further comprises a database that is accessible over the network and operable to store information related to the network. A vulnerability assessment component is provided that is operable to execute a command over the communication network, and a data monitoring utility operates to monitor data transmitted over the communication network as the vulnerability assessment component executes commands. Also, an intrusion detection component is included that is operable to provide a simulated copy of the network, to generate a first data transmission on the simulated copy of the network that represents a second data transmission on the communication network, and to compare the first data transmission with a second data transmission. The vulnerability assessment component preferably interfaces with the intrusion detection component to define rules associated with the first and second data transmissions, to store the rules in the database, and to retrieve the rules from the database in order to predict and prevent unauthorized intrusion in the computer configuration.
机译:本发明提供了一种用于预测和防止对计算机配置的未授权入侵的系统和方法。优选地,本发明包括至少两个计算设备连接到的通信网络,其中,至少一个计算设备可操作以接收由另一计算设备发送的数据。本发明进一步包括可通过网络访问并且可操作以存储与网络有关的信息的数据库。提供了一种漏洞评估组件,该组件可操作以通过通信网络执行命令,并且当漏洞评估组件执行命令时,数据监视实用程序用于监视通过通信网络传输的数据。而且,包括入侵检测组件,其可操作以提供网络的模拟副本,以在网络的模拟副本上生成代表通信网络上的第二数据传输的第一数据传输,并比较第一数据传输与第二数据传输。漏洞评估组件优选地与入侵检测组件对接,以定义与第一和第二数据传输相关联的规则,将该规则存储在数据库中,并从数据库中检索该规则,以便预测并防止对计算机的未授权入侵。组态。

著录项

  • 公开/公告号US7784099B2

    专利类型

  • 公开/公告日2010-08-24

    原文格式PDF

  • 申请/专利权人 PAUL BENJAMIN;

    申请/专利号US20060358165

  • 发明设计人 PAUL BENJAMIN;

    申请日2006-02-21

  • 分类号G06F12/14;G08B23/00;

  • 国家 US

  • 入库时间 2022-08-21 18:49:59

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号