Invention Grant
- Patent Title: Statistical method and system for network anomaly detection
- Patent Title (中): 网络异常检测统计方法与系统
-
Application No.: US12059076Application Date: 2008-03-31
-
Publication No.: US08601575B2Publication Date: 2013-12-03
- Inventor: Peter Mullarkey , Michael C. Johns
- Applicant: Peter Mullarkey , Michael C. Johns
- Applicant Address: US NY Islandia
- Assignee: CA, Inc.
- Current Assignee: CA, Inc.
- Current Assignee Address: US NY Islandia
- Agency: Baker Botts L.L.P.
- Main IPC: G06F11/00
- IPC: G06F11/00 ; G06F15/173

Abstract:
An anomaly detection method and system determine network status by monitoring network activity. A statistics based profile for said network over a period is generated to analyze potentially anomalous network activity to determine if said network activity is anomalous by comparing current activity against the profile. Using the profile as a reference, the anomaly detection system and process estimate and prioritize potentially anomalous network activity based on the probability that the behavior is anomalous. The level of severity that the anomaly detection process uses to determine if an alarm is needed is based on comparing user-adjustable thresholds to the current probability. If the threshold has been breached, the user is alerted, subject to other quality checks. After a reporting cycle concludes, the anomaly detection system and process recompiles the statistics based profile to take into account the information observed in the previous reporting cycle.
Public/Granted literature
- US20080250497A1 STATISTICAL METHOD AND SYSTEM FOR NETWORK ANOMALY DETECTION Public/Granted day:2008-10-09
Information query