发明名称 SYSTEM SECURITY MONITORING
摘要 A computing device may receive netflow data that includes information corresponding to network-side activity associated with a target device. The computing device may evaluate the netflow data based on a netflow signature to identify potentially malicious activity. The netflow signature may include information corresponding to two or more network events occurring in a particular order. The computing device may report, to another computing device, that potentially malicious activity, corresponding to the network data, has been detected based on the evaluation of the netflow data.
申请公布号 US2013160119(A1) 申请公布日期 2013.06.20
申请号 US201113329931 申请日期 2011.12.19
申请人 SARTIN A. BRYAN;GANLEY GINA M.;LONG KEVIN;JOELS JO ANN;BONILLO, JR. ANDREW J.;VERIZON PATENT AND LICENSING INC. 发明人 SARTIN A. BRYAN;GANLEY GINA M.;LONG KEVIN;JOELS JO ANN;BONILLO, JR. ANDREW J.
分类号 G06F11/00;G06F15/16;G06F21/00 主分类号 G06F11/00
代理机构 代理人
主权项
地址