Invention Grant
US09407646B2 Applying a mitigation specific attack detector using machine learning
有权
使用机器学习应用缓解特定的攻击检测器
- Patent Title: Applying a mitigation specific attack detector using machine learning
- Patent Title (中): 使用机器学习应用缓解特定的攻击检测器
-
Application No.: US14338909Application Date: 2014-07-23
-
Publication No.: US09407646B2Publication Date: 2016-08-02
- Inventor: Javier Cruz Mota , Andrea Di Pietro , Jean-Philippe Vasseur
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Parker Ibrahim & Berg LLC
- Agent James M. Behmke; Stephen D. LeBarron
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
In one embodiment, a device in a network detects a network attack using aggregated metrics for a set of traffic data. In response to detecting the network attack, the device causes the traffic data to be clustered into a set of traffic data clusters. The device causes one or more attack detectors to analyze the traffic data clusters. The device causes the traffic data clusters to be segregated into a set of one or more attack-related clusters and into a set of one or more clusters related to normal traffic based on an analysis of the clusters by the one or more attack detectors.
Public/Granted literature
- US20160028754A1 APPLYING A MITIGATION SPECIFIC ATTACK DETECTOR USING MACHINE LEARNING Public/Granted day:2016-01-28
Information query