Invention Grant
- Patent Title: System and methods for adaptive model generation for detecting intrusion in computer systems
-
Application No.: US14509208Application Date: 2014-10-08
-
Publication No.: US09497203B2Publication Date: 2016-11-15
- Inventor: Andrew Honig , Andrew Howard , Eleazar Eskin , Salvatore J. Stolfo
- Applicant: The Trustees of Columbia University in the City of New York
- Applicant Address: US NY New York
- Assignee: THE TRUSTEES OF COLUMBIA UNIVERSITY IN THE CITY OF NEW YORK
- Current Assignee: THE TRUSTEES OF COLUMBIA UNIVERSITY IN THE CITY OF NEW YORK
- Current Assignee Address: US NY New York
- Agency: Baker Botts L.L.P.
- Main IPC: G06F11/00
- IPC: G06F11/00 ; H04L29/06 ; G06F21/55 ; G06F17/30 ; G06F21/56

Abstract:
A system and methods for detecting intrusions in the operation of a computer system comprises a sensor configured to gather information regarding the operation of the computer system, to format the information in a data record having a predetermined format, and to transmit the data in the predetermined data format. A data warehouse is configured to receive the data record from the sensor in the predetermined data format and to store the data in a SQL database. A detection model generator is configured to request data records from the data warehouse in the predetermined data format, to generate an intrusion detection model based on said data records, and to transmit the intrusion detection model to the data warehouse according to the predetermined data format. A detector is configured to receive a data record in the predetermined data format from the sensor and to classify the data record in real-time as one of normal operation and an attack based on said intrusion detection model. A data analysis engine is configured to request data records from the data warehouse according to the predetermined data format and to perform a data processing function on the data records.
Public/Granted literature
- US20150058994A1 SYSTEM AND METHODS FOR ADAPTIVE MODEL GENERATION FOR DETECTING INTRUSION IN COMPUTER SYSTEMS Public/Granted day:2015-02-26
Information query