发明名称 SYSTEMS AND METHODS FOR CAPTURING OR REPLAYING TIME-SERIES DATA
摘要 Provided is an intrusion detection system configured to detect anomalies indicative of a zero-day attack by statistically analyzing substantially all traffic on a network in real-time. The intrusion detection system, in some aspects, includes a network interface; one or more processors communicatively coupled to the network interface; system memory communicatively coupled to the processors. The system memory, in some aspects, stores instructions that when executed by the processors cause the processors to perform steps including: buffering network data from the network interface in the system memory; retrieving the network data buffered in the system memory; applying each of a plurality of statistical or machine-learning intrusion-detection models to the retrieved network data; aggregating intrusion-likelihood scores from each of the intrusion-detection models in an aggregate score, and upon the aggregate score exceeding a threshold, outputting an alert.
申请公布号 US2014101763(A1) 申请公布日期 2014.04.10
申请号 US201213663263 申请日期 2012.10.29
申请人 TRACEVECTOR, INC. 发明人 HARLACHER JAMES;ABENE MARK
分类号 G06F21/00;G06F12/14 主分类号 G06F21/00
代理机构 代理人
主权项
地址