Invention Grant
US08656493B2 Decoy network technology with automatic signature generation for intrusion detection and intrusion prevention systems 有权
诱饵网络技术,具有入侵检测和入侵防御系统的自动签名生成功能

  • Patent Title: Decoy network technology with automatic signature generation for intrusion detection and intrusion prevention systems
  • Patent Title (中): 诱饵网络技术,具有入侵检测和入侵防御系统的自动签名生成功能
  • Application No.: US13759335
    Application Date: 2013-02-05
  • Publication No.: US08656493B2
    Publication Date: 2014-02-18
  • Inventor: Alen Capalik
  • Applicant: Alen Capalik
  • Applicant Address: US CA Santa Monica
  • Assignee: NeuralIQ, Inc.
  • Current Assignee: NeuralIQ, Inc.
  • Current Assignee Address: US CA Santa Monica
  • Agency: Morgan, Lewis & Bockius LLP
  • Main IPC: G06F21/00
  • IPC: G06F21/00
Decoy network technology with automatic signature generation for intrusion detection and intrusion prevention systems
Abstract:
Improved methods and systems for decoy networks with automatic signature generation for intrusion detection and intrusion prevention systems. A modular decoy network with front-end monitor/intercept module(s) with a processing back-end that is separate from the protected network. The front-end presents a standard fully functional operating system that is a decoy so that the instigator of an attack is lead to believe a connection has been made to the protected network. The front-end includes a hidden sentinel kernal driver that monitors connections to the system and captures attack-identifying information. The captured information is sent to the processing module for report generation, data analysis and generation of an attack signature. The generated attack signature can then be applied to the library of signatures of the intrusion detection system or intrusion prevention system of the protected network to defend against network based attacks including zero-day attacks.
Information query
Patent Agency Ranking
0/0