发明名称 METHOD FOR DETECTING INTRUSION BY INFERRING DEGREE OF DANGER
摘要 PURPOSE: A method for detecting intrusion by inferring a degree of danger is provided to analyze a packet by considering use of a destination system utility of a searched packet, infer the degree of danger and notify it. CONSTITUTION: A packet collector collects network packets. A packet analyzer analyzes the collected packet and then divides it into an IP(Internet Protocol) of a destination system and packet data(52,54). The packet analyzer compares and searches the information on various intrusion types, which is stored in an intrusion type DB, with the packet data and then discriminates whether the packet corresponds with a predetermined intrusion type(56). If the packet corresponds with a predetermined intrusion type, the packet analyzer compares the IP of the divided destination system and the use field DB, and infers and then notifies the degree of danger(60,62,64).
申请公布号 KR20030048954(A) 申请公布日期 2003.06.25
申请号 KR20010079010 申请日期 2001.12.13
申请人 IGLOO SECURITY, INC. 发明人 CHA, SU GIL;JU, JEONG HO;JUN, BEOP HUN;LEE, YONG GYUN;PARK, GYU HYEONG;PARK, HYEON TAE
分类号 H04L12/22;(IPC1-7):H04L12/22 主分类号 H04L12/22
代理机构 代理人
主权项
地址