Invention Grant
- Patent Title: Network attack detection devices and methods
- Patent Title (中): 网络攻击检测设备和方法
-
Application No.: US12837986Application Date: 2010-07-16
-
Publication No.: US08341742B2Publication Date: 2012-12-25
- Inventor: Hahn-Ming Lee , Si-Yu Huang , Jerome Yeh , Ching-Hao Mao
- Applicant: Hahn-Ming Lee , Si-Yu Huang , Jerome Yeh , Ching-Hao Mao
- Applicant Address: TW Taipei
- Assignee: National Taiwan University of Science and Technology
- Current Assignee: National Taiwan University of Science and Technology
- Current Assignee Address: TW Taipei
- Agency: Wang Law Firm, Inc.
- Agent Li K. Wang; Stephen Hsu
- Priority: TW99101730A 20100122
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
A network attack detection device is provided, including a spatial coordinate database for storing spatial coordinate data; a standard time zone database for storing standard time zone data; a domain name system packet collector for collecting a domain name system packet; a spatial snapshot feature extractor for extracting internet protocol address corresponding to the domain name system packet according to the domain name system packet, and generating spatial feature data corresponding to the internet protocol address according to the internet protocol address, the spatial coordinate data and the standard time zone data; and an attack detector for determining whether the domain name system packet is an attack according to the spatial feature data and a spatial snapshot detection model, and when determining that the domain name system packet is an attack, sending a warning to indicate the attack.
Public/Granted literature
- US20110185425A1 NETWORK ATTACK DETECTION DEVICES AND METHODS Public/Granted day:2011-07-28
Information query