Invention Grant
- Patent Title: Intrusion detection using MDL clustering
- Patent Title (中): 使用MDL聚类的入侵检测
-
Application No.: US13102899Application Date: 2011-05-06
-
Publication No.: US09106689B2Publication Date: 2015-08-11
- Inventor: Eric Steinbrecher , Jeremy Impson , Bruce Barnett , Scott Charles Evans , Bernhard Scholz , Weizhong Yan , Thomas Markham , Stephen J. Dill
- Applicant: Eric Steinbrecher , Jeremy Impson , Bruce Barnett , Scott Charles Evans , Bernhard Scholz , Weizhong Yan , Thomas Markham , Stephen J. Dill
- Applicant Address: US MD Bethesda
- Assignee: Lockheed Martin Corporation
- Current Assignee: Lockheed Martin Corporation
- Current Assignee Address: US MD Bethesda
- Agency: Miles & Stockbridge PC
- Agent James T. Carmichael
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/55

Abstract:
An intrusion detection method, system and computer-readable media are disclosed. The system can include a processor programmed to perform computer network intrusion detection. The intrusion detection can include an identification module and a detection module. The identification module can be adapted to perform semi-supervised machine learning to identify key components of a network attack and develop MDL models representing those attack components. The detection module can cluster the MDL models and use the clustered MDL models to classify network activity and detect polymorphic or zero-day attacks.
Public/Granted literature
- US20120284793A1 INTRUSION DETECTION USING MDL CLUSTERING Public/Granted day:2012-11-08
Information query