Invention Grant
US08108929B2 Method and system for detecting intrusive anomalous use of a software system using multiple detection algorithms
失效
使用多种检测算法检测软件系统的侵入性异常使用的方法和系统
- Patent Title: Method and system for detecting intrusive anomalous use of a software system using multiple detection algorithms
- Patent Title (中): 使用多种检测算法检测软件系统的侵入性异常使用的方法和系统
-
Application No.: US10967945Application Date: 2004-10-19
-
Publication No.: US08108929B2Publication Date: 2012-01-31
- Inventor: Subhash C. Agrawal , Scott M. Wimer , Jonathan H. Young
- Applicant: Subhash C. Agrawal , Scott M. Wimer , Jonathan H. Young
- Applicant Address: US GA Atlanta
- Assignee: Reflex Systems, LLC
- Current Assignee: Reflex Systems, LLC
- Current Assignee Address: US GA Atlanta
- Agent David H. Judson
- Main IPC: G06F21/00
- IPC: G06F21/00

Abstract:
A target software system is instrumented to generate behavior data representing a current observation or observation aggregate. A method then determines whether the current observation or observation aggregate warrants a second level examination; preferably, this determination is made by processing the current observation or observation aggregate through a first level detection algorithm that provides a provisional indication of a possible intrusion. If executing the first level detection algorithm indicates that the current observation or observation aggregate warrants a second level examination, the method continues by processing the current observation or observation aggregate through at least one second level detection algorithms to provide a more definite, fine grain indication of a possible intrusion. Multiple algorithms may be executed together within a single examination level, with the individual results then analyzed to obtain a composite result or output indicative of intrusive or anomalous behavior.
Public/Granted literature
Information query