Intelligent intrusion detection system utilizing enhanced graph-matching of network activity with context data

Number of patents in Portfolio can not be more than 2000

United States of America Patent

PATENT NO 7624448
APP PUB NO 20070209074A1
SERIAL NO

11367943

Stats

ATTORNEY / AGENT: (SPONSORED)

Importance

Loading Importance Indicators... loading....

Abstract

See full text

A method, system, and computer program product for utilizing a mapping of activity occurring at and between devices on a computer network to detect and prevent network intrusions. An enhanced graph matching intrusion detection system (eGMIDS) is provided that provides data collection functions, data fusion techniques, graph matching algorithms, and secondary and other search mechanisms. Threats are modeled as a set of entities and interrelations between the entities and sample threat patterns are stored within a database. The eGMIDS utility initiates a graph matching algorithm by which the threat patterns are compared within the generated activity graph via subgraph isomorphism. A multi-layered approach including a targeted secondary layer search following a match during a primary layer search is provided. Searches are tempered by attributes and constraints and the eGMIDS reduces the number of threat patterns searched by utilizing ontological generalization.

Loading the Abstract Image... loading....

First Claim

See full text

Family

Loading Family data... loading....

Patent Owner(s)

Patent OwnerAddress
NORTHROP GRUMMAN SYSTEMS CORPORATION2980 FAIRVIEW PARK DRIVE FALLS CHURCH VA 22042

International Classification(s)

  • [Classification Symbol]
  • [Patents Count]

Inventor(s)

Inventor Name Address # of filed Patents Total Citations
Coffman, Thayne Richard Austin , US 4 731

Cited Art Landscape

Load Citation

Patent Citation Ranking

Forward Cite Landscape

Load Citation