发明名称 USING TRUST PROFILES FOR NETWORK BREACH DETECTION
摘要 Actions of servers and other network devices within a network are monitored to detect whether the servers and network devices are performing tasks, using protocols, and communicating through ports that are consistent with legitimate (or "permissible") purposes. That is, rather than attempting to belatedly identify malware signatures and screen all traffic into and out of a network for these signatures, embodiments of the present invention scrutinize devices (such as servers and other network infrastructure elements) for malware behavior that is inconsistent with an identified set of actions known to be consistent with legitimate tasks performed by the network device.
申请公布号 WO2015153093(A1) 申请公布日期 2015.10.08
申请号 WO2015US20127 申请日期 2015.03.12
申请人 NETSCOUT SYSTEMS, INC. 发明人 SINGHAL, ANIL K.;NAKAMOTO, SHU;BRIGGS, DEBORAH
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项
地址