摘要 |
A monitoring apparatus includes a storage unit that stores history information regarding a login attempt to a system by a communication apparatus in a state in which a first address is set, the system being a target to be monitored, and set a second address, an extracting unit that extracts, from the history information, at least one of a variance of a number of login attempts per unit time and a length of a time of the login attempts, a determining unit that determines whether an attack in which accesses are attempted while an address is changed was executed on the system, according to the at least one of the variance and the length of the time and an output unit that, when it is determined that the attack was executed, adds the second address of the system to a list that manages systems that had the attack. |