首页> 外国专利> CONFRONTATION SYSTEM PREPARING FOR ZERODAY ATTACK AND CONFRONTATION METHOD THEREOF

CONFRONTATION SYSTEM PREPARING FOR ZERODAY ATTACK AND CONFRONTATION METHOD THEREOF

机译:零日攻击的加冕系统及其加冕方法

摘要

A system and a method for confronting zero-day attack are provided to prevent the zero-day attack from being spread throughout the network by efficiently detecting and controlling a zero-day attack pattern with applying a zero-day attack pattern collecting policy to packets received in the network. A zero-day attack detector(110) extracts the IP(Internet Protocol) information from attack patterns by the zero-day attack pattern collecting policy for classifying the attack patterns from the receiving packets based on packet head information. A zero-day attack signature generator(130) generates a suspected zero-day attack signature by receiving the IP information and extracting/comparing payload information from the attack packets. A signature database(135) stores the attack signatures and signature information including a list of the attack signatures. A zero-day attack signature manager(150) determines new attack by comparing the suspected zero-day attack signature with the signature information. An intrusion preventer(160) blocks the attack packets including the suspected zero-day attack signature by using a firewall(200) and a router(300).
机译:提供了一种对抗零日攻击的系统和方法,以通过对接收到的数据包应用零日攻击模式收集策略来有效地检测和控制零日攻击模式,从而防止零日攻击在整个网络中传播。在网络中。零日攻击检测器(110)通过零日攻击模式收集策略从攻击模式中提取IP(互联网协议)信息,该零日攻击模式收集策略用于基于分组头信息对来自接收分组的攻击模式进行分类。零日攻击签名生成器(130)通过接收IP信息并从攻击分组中提取/比较有效载荷信息来生成可疑的零日攻击签名。签名数据库(135)存储攻击签名和包括攻击签名列表的签名信息。零日攻击签名管理器(150)通过将可疑的零日攻击签名与签名信息进行比较来确定新的攻击。入侵防御器(160)通过使用防火墙(200)和路由器(300)阻止包括可疑的零日攻击签名的攻击包。

著录项

  • 公开/公告号KR100769221B1

    专利类型

  • 公开/公告日2007-10-29

    原文格式PDF

  • 申请/专利权人 KOREA INFORMATION SECURITY AGENCY;

    申请/专利号KR20060073576

  • 发明设计人 CHO BUM RAE;SIM WON TAE;

    申请日2006-08-04

  • 分类号G06F15;G06F17;

  • 国家 KR

  • 入库时间 2022-08-21 20:31:09

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号