Invention Grant
- Patent Title: Architecture for identifying electronic threat patterns
- Patent Title (中): 用于识别电子威胁模式的架构
-
Application No.: US11657247Application Date: 2007-01-24
-
Publication No.: US07941851B2Publication Date: 2011-05-10
- Inventor: Yuval Shahar , Assaf Shabtai , Gil Tahan , Yuval Elovici
- Applicant: Yuval Shahar , Assaf Shabtai , Gil Tahan , Yuval Elovici
- Applicant Address: DE Bonn
- Assignee: Deutsche Telekom AG
- Current Assignee: Deutsche Telekom AG
- Current Assignee Address: DE Bonn
- Agency: Roach Brown McCarthy & Gruber, P.C.
- Agent Kevin D. McCarthy
- Priority: IL173472 20060131
- Main IPC: G06F11/00
- IPC: G06F11/00

Abstract:
The invention is a comprehensive conceptual and computational architecture that enables monitoring accumulated time-oriented data using knowledge related to the operation of elements of a computer network and deriving temporal abstractions from the accumulated data and the knowledge in order to identify electronic threat patterns and create alerts. The architecture of the invention supports two main modes of operation: a. an automated, continuous mode for monitoring, recognition and detection of known eThreats; and b. an interactive, human-operated intelligent tool for dynamic exploration of the contents of a security storage service to identify new temporal patterns that characterize such threats, and to add them to the monitoring database. The architecture of the invention can analyze data collected from various sources, such as end-user devices, network element, network links etc., to identify potentially infected devices, files, sub-streams or network segments.
Public/Granted literature
- US20070192859A1 Architecture for identifying electronic threat patterns Public/Granted day:2007-08-16
Information query