Invention Grant
- Patent Title: Identifying threats based on hierarchical classification
- Patent Title (中): 识别基于层次分类的威胁
-
Application No.: US14519444Application Date: 2014-10-21
-
Publication No.: US09462008B2Publication Date: 2016-10-04
- Inventor: Karel Bartos , Michal Sofka
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Hickman Palermo Becker Bingham LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/55 ; G06F17/30

Abstract:
A system and a method are disclosed for identifying network threats based on hierarchical classification. The system receives packet flows from a data network and determines flow features for the received packet flows based on data from the packet flows. The system also classifies each packet flow into a flow class based on flow features of the packet flow. Based on a criterion, the system selects packet flows from the received packet flows and places the selected packet flows into an event set that represents an event on the network. The system determines event set features for the event set based on the flow features of the selected packet flows. The system then classifies the event set into a set class based on the determined event set features. Based on the set class, the computer system may report a threat incident on an internetworking device that originated the selected packet flows.
Public/Granted literature
- US20150334125A1 IDENTIFYING THREATS BASED ON HIERARCHICAL CLASSIFICATION Public/Granted day:2015-11-19
Information query