Invention Grant
US08931099B2 System, method and program for identifying and preventing malicious intrusions
有权
用于识别和防止恶意入侵的系统,方法和程序
- Patent Title: System, method and program for identifying and preventing malicious intrusions
- Patent Title (中): 用于识别和防止恶意入侵的系统,方法和程序
-
Application No.: US13965303Application Date: 2013-08-13
-
Publication No.: US08931099B2Publication Date: 2015-01-06
- Inventor: Jeffrey S. Lahann , Frederic G. Thiele , Michael A. Walter
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agent Matthew H. Chung; Arthur J. Samodovitz
- Main IPC: G06F11/00
- IPC: G06F11/00 ; G06F21/56 ; H04L29/06

Abstract:
Computer system, method and program product for identifying a malicious intrusion. A first number of different destination IP addresses, a second number of different destination ports and a third number of different signatures of messages, are identified from a source IP address during a predetermined period. A determination is made that in one or more other such predetermined periods the source IP address sent messages having the first number of different destination IP addresses, the second number of different destination ports and the third number of different signatures. Based on the determination that in the one or more other such predetermined periods the source IP address sent messages having the first number of different destination IP addresses, the second number of different destination ports and the third number of different signatures, a determination is made that the messages are characteristic of a malicious intrusion.
Public/Granted literature
- US20130333036A1 SYSTEM, METHOD AND PROGRAM FOR IDENTIFYING AND PREVENTING MALICIOUS INTRUSIONS Public/Granted day:2013-12-12
Information query