发明名称 Attack node set determination apparatus and method, information processing device, attack dealing method, and program
摘要 An attack node set determination apparatus obtains an event log basic parameter extracted from collected event logs and attribute information based on the event log basic parameter. The attack node set determination apparatus performs a clustering on a space having dimensions of part or all of the obtained attribute information and event log basic parameter, computes a cluster, and transmits information on the cluster and a countermeasure against the cluster to a firewall. Upon detecting an attack packet from an attack node set, the firewall identifies a cluster including the attack packet and conducts a countermeasure against the whole identified cluster.
申请公布号 US2010050260(A1) 申请公布日期 2010.02.25
申请号 US20090461363 申请日期 2009.08.10
申请人 HITACHI INFORMATION SYSTEMS, LTD. 发明人 NAKAKOJI HIROFUMI;KITO TETSURO;TERADA MASATO;TANKYO SHINICHI;KAINE ISAO
分类号 G06F11/00 主分类号 G06F11/00
代理机构 代理人
主权项
地址