发明名称 Mitigating multiple advanced evasion technique attacks
摘要 Aspects of the invention relate to a method of identifying a potential attack in network traffic that includes payload data transmitted to a host entity in the network. The method includes: monitoring and checking said traffic on route to said host entity for intrusion attacks at a network entity acting as a proxy server; performing a first data-check on one or more data bytes of the payload data at the network entity acting as a proxy server; performing a second data-check, equivalent to the first data-check, on data of the network equivalent to the one or more bytes of payload data at a network entity acting as an Intrusion Detection System/Intrusion Protection System (IDS/IPS);and comparing the results of the first and second data-checks to determine if there is a mismatch, any mismatch being an indication that said step of monitoring and checking said traffic is unreliable.
申请公布号 GB201609387(D0) 申请公布日期 2016.07.13
申请号 GB20160009387 申请日期 2016.05.27
申请人 F-SECURE CORPORATION 发明人
分类号 主分类号
代理机构 代理人
主权项
地址