发明名称 Detecting malicious network software agents
摘要 This disclosure describes techniques for determining whether a network session originates from an automated software agent. In one example, a network device, such as a router, includes a network interface to receive packets of a network session, a bot detection module to calculate a plurality of scores for network session data based on a plurality of metrics, wherein each of the metrics corresponds to a characteristic of a network session originated by an automated software agent, to produce an aggregate score from an aggregate of the plurality of scores, and to determine that the network session is originated by an automated software agent when the aggregate score exceeds a threshold, and an attack detection module to perform a programmed response when the network session is determined to be originated by an automated software agent. Each score represents a likelihood that the network session is originated by an automated software agent.
申请公布号 EP2247064(A3) 申请公布日期 2014.07.09
申请号 EP20100156048 申请日期 2010.03.10
申请人 JUNIPER NETWORKS, INC. 发明人 BURNS, BRYAN;NARAYANASWAMY, KRISHNA
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项
地址