发明名称 SDI-SCAM
摘要 A distributed multi-agent system and method is implemented and employed across at least one intranet for purposes of real time collection, monitoring, aggregation, analysis and modeling of system and network operations, communications, internal and external accesses, code execution functions, network and network resource conditions as well as other assessable criteria within the implemented environment. Analytical models are constructed and dynamically updated from the data sources so as to be able to rapidly identify and characterize conditions within the environment (such as behaviors, events, and functions) that are typically characteristic with that of a normal state and those that are of an abnormal or potentially suspicious state. The model is further able to implement statistical flagging functions, provide analytical interfaces to system administrators and estimate likely conditions that characterize the state of the system and the potential threat. The model may further recommend (or alternatively implement autonomously or semi-autonomously) optimal remedial repair and recovery strategies as well as the most appropriate countermeasures to isolate or neutralize the threat and its effects.
申请公布号 US2013305377(A1) 申请公布日期 2013.11.14
申请号 US201313942175 申请日期 2013.07.15
申请人 HERZ FREDERICK S.M. 发明人 HERZ FREDERICK S.M.
分类号 H04L29/06;H04L12/24 主分类号 H04L29/06
代理机构 代理人
主权项
地址