Invention Grant
US09392007B2 System and method for identifying infected networks and systems from unknown attacks 有权
用于识别未知攻击的受感染网络和系统的系统和方法

System and method for identifying infected networks and systems from unknown attacks
Abstract:
Systems and method of the present disclosure are directed to a network security monitor. The monitor can receive logs of a second computer network indicative of a status of the second computer network determined by a monitoring agent executing on the second computer network. The monitor can generate indexed logs from the logs based on log format. The monitor can retrieving a list of threat indicators from a database based on a schema from a plurality of threat indicators received from a plurality of heterogeneous repositories via the first computer network. The monitor can compare the list of threat indicators with the indexed logs. The monitor can generate a report based on the comparing to identify a threat.
Information query
Patent Agency Ranking
0/0