会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明申请
    • SYSTEM AND METHOD FOR HYPERTEXT TRANSFER PROTOCOL LAYERED RECONSTRUCTION
    • 用于超文本传输​​协议层重构的系统和方法
    • US20120158737A1
    • 2012-06-21
    • US12968453
    • 2010-12-15
    • Joseph H. LevyMatthew Scott WoodDaniel ArnoldKenny FoisyDave Tubbs
    • Joseph H. LevyMatthew Scott WoodDaniel ArnoldKenny FoisyDave Tubbs
    • G06F17/30
    • G06F17/30902H04L43/18
    • HTTP layered reconstruction is disclosed. A database is queried to identify a location of a previously reconstructed HTML artifact file or packet data of a HTML file in a repository that stores packet data captured from a network. The reconstructed HTML file is analyzed. Links to external files are identified and the database is queried to identify a location of previously reconstructed artifact files or packet data of associated external files. The external files are reconstructed, as needed. A web page is then reconstructed based on the reconstructed HTML file and reconstructed external files, presenting a view of the web page as it originally appeared to a user. A user may specify which external file types to include and/or not include. New versions of external files may be obtained and indicated in the reconstructed web page when associated artifact files or packet data are not stored within the repository.
    • 公开了HTTP分层重建。 查询数据库以识别存储从网络捕获的分组数据的存储库中的先前重建的HTML工件文件或HTML文件的分组数据的位置。 分析重建的HTML文件。 识别与外部文件的链接,并查询数据库以识别先前重建的工件文件或相关外部文件的数据包数据的位置。 根据需要重构外部文件。 然后基于重构的HTML文件和重建的外部文件来重构网页,呈现网页最初对用户看来的视图。 用户可以指定要包括和/或不包括的外部文件类型。 当相关联的工件文件或分组数据不存储在存储库中时,可以在重建的网页中获得并指示新版本的外部文件。
    • 2. 发明授权
    • System and method for hypertext transfer protocol layered reconstruction
    • 超文本传输​​协议分层重构的系统与方法
    • US08849991B2
    • 2014-09-30
    • US12968453
    • 2010-12-15
    • Joseph H. LevyMatthew Scott WoodDaniel ArnoldKenny FoisyDave Tubbs
    • Joseph H. LevyMatthew Scott WoodDaniel ArnoldKenny FoisyDave Tubbs
    • G06F15/173H04L12/26G06F17/30
    • G06F17/30902H04L43/18
    • HTTP layered reconstruction is disclosed. A database is queried to identify a location of a previously reconstructed HTML artifact file or packet data of a HTML file in a repository that stores packet data captured from a network. The reconstructed HTML file is analyzed. Links to external files are identified and the database is queried to identify a location of previously reconstructed artifact files or packet data of associated external files. The external files are reconstructed, as needed. A web page is then reconstructed based on the reconstructed HTML file and reconstructed external files, presenting a view of the web page as it originally appeared to a user. A user may specify which external file types to include and/or not include. New versions of external files may be obtained and indicated in the reconstructed web page when associated artifact files or packet data are not stored within the repository.
    • 公开了HTTP分层重建。 查询数据库以识别存储从网络捕获的分组数据的存储库中的先前重建的HTML工件文件或HTML文件的分组数据的位置。 分析重建的HTML文件。 识别与外部文件的链接,并查询数据库以识别先前重建的工件文件或相关外部文件的数据包数据的位置。 根据需要重构外部文件。 然后基于重构的HTML文件和重建的外部文件来重构网页,呈现网页最初对用户看来的视图。 用户可以指定要包括和/或不包括的外部文件类型。 当相关联的工件文件或分组数据不存储在存储库中时,可以在重建的网页中获得并指示新版本的外部文件。
    • 6. 发明授权
    • Method and apparatus of network artifact indentification and extraction
    • 网络伪影识别和提取的方法和装置
    • US08625642B2
    • 2014-01-07
    • US12126551
    • 2008-05-23
    • Matthew Scott WoodPaal TveitBrian EdgintonSteve ShillingfordJames Brown
    • Matthew Scott WoodPaal TveitBrian EdgintonSteve ShillingfordJames Brown
    • H04L12/66
    • H04L67/36H04L51/12H04L63/0428
    • A method, system, and apparatus of network artifact identification and extraction are disclosed. In one embodiment, a method includes aggregating a payload data (e.g., may be a component of the extracted artifact) from different network packets to form an aggregated payload data, matching the payload data with an entry of a library of known artifacts, determining a type of the payload data based on a match with the entry of the library of known artifacts, separating the payload data from a header data in a network packet, and communicating the aggregated payload data as an extracted artifact to a user. The method may include using the extracted artifact to perform network visibility analysis of users on packets flowing across the network. The method may validate that the entry is accurate by performing a deeper analysis of the payload data with the entry of the library of known artifacts.
    • 公开了网络伪影识别和提取的方法,系统和装置。 在一个实施例中,一种方法包括从不同的网络分组聚合有效载荷数据(例如,可以是所提取的神器的组件)以形成聚合的有效载荷数据,将有效载荷数据与已知工件的库的条目相匹配, 基于与已知装置的库的条目的匹配的有效载荷数据的类型,将有效载荷数据与网络包中的标题数据分离,并将聚集的有效载荷数据作为提取的伪像传送给用户。 该方法可以包括使用所提取的伪影来对在网络上流动的分组上的用户执行网络可视性分析。 该方法可以通过使用已知工件的库的输入对有效载荷数据进行更深入的分析来验证该条目是否准确。
    • 7. 发明申请
    • ON DEMAND NETWORK ACTIVITY REPORTING THROUGH A DYNAMIC FILE SYSTEM AND METHOD
    • 通过动态文件系统和方法报告需求网络活动
    • US20090292736A1
    • 2009-11-26
    • US12126619
    • 2008-05-23
    • Matthew Scott WoodPaal TveitBrian EdgintonSteve ShillingfordJames Brown
    • Matthew Scott WoodPaal TveitBrian EdgintonSteve ShillingfordJames Brown
    • G06F17/30
    • H04L43/028
    • A method, apparatus and a system of on demand network activity reporting through a dynamic file system and method are disclosed. In one embodiment, a method includes forming a root level selection guide based on a set of criteria associated with an activity through a network that is captured and stored on a storage device associated with a network appliance, refreshing listings of a sub-directory of the root level selection guide dynamically based on the activity through the network stored on the storage device when an option is selected in the root level selection guide, and creating a packet capture file based on a current state of the activity through the network when one of the listings of the sub-directory of the root level selection guide is selected. The method may include automatically referencing a database having the activity through the network when creating the packet capture file.
    • 公开了一种通过动态文件系统和方法进行点播网络活动报告的方法,装置和系统。 在一个实施例中,一种方法包括:基于与通过网络的活动相关联的准则集合形成根级别选择指南,该网络捕获并存储在与网络设备相关联的存储设备上,刷新所述网络设备的子目录的列表 根层级选择指南,当在根级别选择指南中选择选项时,基于存储在存储设备上的网络的动态动态地创建根级别选择指南,以及当基于当前状态的网络中的一个时,基于活动的当前状态来创建分组捕获文件 选择根级别选择指南的子目录的列表。 该方法可以包括当创建分组捕获文件时自动引用具有通过网络的活动的数据库。
    • 10. 发明申请
    • METHOD AND APPARATUS OF NETWORK ARTIFACT INDENTIFICATION AND EXTRACTION
    • 网络艺术鉴定与提取的方法与装置
    • US20090290580A1
    • 2009-11-26
    • US12126551
    • 2008-05-23
    • Matthew Scott WoodPaal TveitBrian EdgintonSteve ShillingfordJames Brown
    • Matthew Scott WoodPaal TveitBrian EdgintonSteve ShillingfordJames Brown
    • H04L12/28
    • H04L67/36H04L51/12H04L63/0428
    • A method, system, and apparatus of network artifact identification and extraction are disclosed. In one embodiment, a method includes aggregating a payload data (e.g., may be a component of the extracted artifact) from different network packets to form an aggregated payload data, matching the payload data with an entry of a library of known artifacts, determining a type of the payload data based on a match with the entry of the library of known artifacts, separating the payload data from a header data in a network packet, and communicating the aggregated payload data as an extracted artifact to a user. The method may include using the extracted artifact to perform network visibility analysis of users on packets flowing across the network. The method may validate that the entry is accurate by performing a deeper analysis of the payload data with the entry of the library of known artifacts.
    • 公开了网络伪影识别和提取的方法,系统和装置。 在一个实施例中,一种方法包括从不同的网络分组聚合有效载荷数据(例如,可以是所提取的神器的组件)以形成聚合的有效载荷数据,将有效载荷数据与已知工件的库的条目相匹配, 基于与已知装置的库的条目的匹配的有效载荷数据的类型,将有效载荷数据与网络包中的标题数据分离,并将聚集的有效载荷数据作为提取的伪像传送给用户。 该方法可以包括使用所提取的伪影来对在网络上流动的分组上的用户执行网络可视性分析。 该方法可以通过使用已知工件的库的输入对有效载荷数据进行更深入的分析来验证该条目是否准确。