会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 2. 发明申请
    • SYSTEM AND METHOD FOR SEMANTIC INTEGRATION OF HETEROGENEOUS DATA SOURCES FOR CONTEXT AWARE INTRUSION DETECTION
    • 异构数据源用于语义集成的系统和方法用于上下文侵入检测
    • US20140337974A1
    • 2014-11-13
    • US14253569
    • 2014-04-15
    • Anupam JOSHITimothy Wilkin FININMary Lisa Mathews
    • Anupam JOSHITimothy Wilkin FININMary Lisa Mathews
    • H04L29/06
    • H04L63/1425H04L63/1433
    • A semantic approach to intrusion detection is provided that can utilize traditional as well as nontraditional data sources collaboratively. The information extracted from these traditional and nontraditional data sources is expressed in an ontology, and reasoning logic rules that correlate at least two separate and/or distinct data sources are used to analyze the extracted information in order to identify the situation or context in which an attack can occur. By utilizing reasoning logic rules that contain rules that correlate at least two separate and/or distinct data sources, a threat or attack can be determined using data that is spatially (e.g., geographically) and temporally separated, resulting in a context aware IDPS that can relate disparate activities spread across time and multiple systems as part of the same attack.
    • 提供了一种入侵检测的语义方法,可以协同利用传统的和非传统的数据源。 从这些传统和非传统数据源提取的信息在本体论中表示,并且使用将至少两个单独的和/或不同的数据源相关联的推理逻辑规则来分析所提取的信息,以便识别这样的情况或上下文,其中 可能会发生攻击。 通过利用包含关联至少两个单独和/或不同数据源的规则的推理逻辑规则,可以使用在空间上(例如,地理上)和时间上分离的数据来确定威胁或攻击,导致上下文感知IDPS,其可以 将跨越时间和多个系统的不同活动作为相同攻击的一部分。