摘要 |
PROBLEM TO BE SOLVED: To automatically deal with unknown attacks to applications. SOLUTION: An information processor connected to a network comprises a packet filtering part, an attack detecting part, an attack pattern creating part, and an attack pattern sending/receiving part. When under an unknown pattern of attacks that have passed unfiltered, the information processor creates a pattern of attacks from the very fact of being attacked and distributes the pattern to other hosts, which then register the unknown attack as a known attack and can then protect the host by filtering the attack. Attacks are caused by not only viruses but also packets consisting of binary data causing buffer overflow. COPYRIGHT: (C)2004,JPO |