发明名称 System and methodology for intrusion detection and prevention
摘要 System and methodology for intrusion detection and prevention is described. In one embodiment, for example, a method is described for detecting and preventing network intrusion, the method comprises steps of: defining intrusion descriptions specifying exploits that may be attempted by malicious network traffic, the intrusion descriptions indicating specific applications that may be targeted by individual exploits; for a particular application participating in network communication, deriving a subset of the intrusion descriptions specifically applicable to that particular application; using the subset of the intrusion descriptions specifically applicable to that application, monitoring network traffic destined for the particular application for detecting an attempted network intrusion; and if a network intrusion is detected, blocking network traffic destined for the particular application determined to comprise an exploit.
申请公布号 US8074277(B2) 申请公布日期 2011.12.06
申请号 US20050907335 申请日期 2005.03.29
申请人 FREUND GREGOR PAUL;CHECK POINT SOFTWARE TECHNOLOGIES, INC. 发明人 FREUND GREGOR PAUL
分类号 G06F11/00;G06F11/30;G06F12/14;G06F12/16;G08B23/00;H04L9/00;H04L9/32;H04L29/06 主分类号 G06F11/00
代理机构 代理人
主权项
地址