发明名称 FILTERING INTRUSION DETECTION SYSTEM EVENTS ON A SINGLE HOST
摘要 Embodiments disclosed herein describe a method to determine consequences of a privilege escalation alert from an intrusion detection system, the method comprising the steps of obtaining privilege escalation alert from the intrusion detection system and analyzing said privilege escalation alert information. The analysis further comprises of identifying the program affected by said privilege escalation alert and determining if it can be circumvented. The users affected by said privilege escalation alert and the transitive effects of said privilege escalation alert are identified.
申请公布号 US2009276853(A1) 申请公布日期 2009.11.05
申请号 US20080114040 申请日期 2008.05.02
申请人 MULVAL TECHNOLOGIES, INC. 发明人 GOVINDAVAJHALA SUDHAKAR
分类号 G06F12/14 主分类号 G06F12/14
代理机构 代理人
主权项
地址