Matching with a large vulnerability signature ruleset for high performance network defense
    133.
    发明授权
    Matching with a large vulnerability signature ruleset for high performance network defense 有权
    与高性能网络防御的大型漏洞签名规则集相匹配

    公开(公告)号:US08522348B2

    公开(公告)日:2013-08-27

    申请号:US12846541

    申请日:2010-07-29

    IPC分类号: G06F11/00

    摘要: Systems, methods, and apparatus are provided for vulnerability signature based Network Intrusion Detection and/or Prevention which achieves high throughput comparable to that of the state-of-the-art regex-based systems while offering improved accuracy. A candidate selection algorithm efficiently matches thousands of vulnerability signatures simultaneously using a small amount of memory. A parsing transition state machine achieves fast protocol parsing. Certain examples provide a computer-implemented method for network intrusion detection. The method includes capturing a data message and invoking a protocol parser to parse the data message. The method also includes matching the parsed data message against a plurality of vulnerability signatures in parallel using a candidate selection algorithm and detecting an unwanted network intrusion based on an outcome of the matching.

    摘要翻译: 提供了基于漏洞签名的网络入侵检测和/或预防的系统,方法和装置,其实现了与现有技术的基于正则表达式的系统相当的高吞吐量,同时提供了更高的精度。 候选者选择算法使用少量内存同时有效地匹配数千个漏洞签名。 解析过渡状态机实现快速协议解析。 某些示例提供用于网络入侵检测的计算机实现的方法。 该方法包括捕获数据消息并调用协议解析器来解析数据消息。 该方法还包括使用候选选择算法并行地解析解析的数据消息与多个脆弱性签名并且基于匹配的结果来检测不需要的网络入侵。

    Process for masking and removal of residue from complex shapes
    134.
    发明授权
    Process for masking and removal of residue from complex shapes 失效
    从复杂形状掩盖和去除残留物的方法

    公开(公告)号:US08518832B1

    公开(公告)日:2013-08-27

    申请号:US13169588

    申请日:2011-06-27

    IPC分类号: H01L21/311 H01L21/461

    摘要: A process is provided for etching a mask layer and removal of residue from a structure having an area sheltered from directional etching. The structure has a shape that forms a silhouette area obstructed from being etched by anisotropic bombardment originating from a first direction, and a mask formed over the mask layer over the structure; A first etch process removes at least a part of the mask layer and retains at least a part of mask layer in the sheltered area. A second etch process removes at least a part of the mask layer in the sheltered area by hydrogen based microwave plasma etching.

    摘要翻译: 提供了一种用于蚀刻掩模层并从具有从定向蚀刻遮蔽的区域的结构中除去残余物的方法。 该结构具有形成通过来自第一方向的各向异性轰击而被阻挡而不被蚀刻的轮廓区域的形状,以及在该结构上形成在掩模层上的掩模; 第一蚀刻工艺去除掩模层的至少一部分并且将掩模层的至少一部分保留在遮蔽区域中。 第二蚀刻工艺通过基于氢的微波等离子体蚀刻去除遮蔽区域中的掩模层的至少一部分。

    COGNITIVE RELAY TECHNIQUES
    137.
    发明申请
    COGNITIVE RELAY TECHNIQUES 审中-公开
    认知继电器技术

    公开(公告)号:US20120213061A1

    公开(公告)日:2012-08-23

    申请号:US13150711

    申请日:2011-06-01

    IPC分类号: H04W88/04 H04W24/04 H04B3/36

    摘要: The subject specification comprises a cognitive relay communications management (CRCM) component associated with a primary communication system, wherein the CRCM component controls relaying at least a portion of transmitted communications from a secondary source device (SSD) transmitting data to a secondary destination device (SDD) associated with a secondary communication system, in accordance with a specified relay protocol, such as a buffered decode-and-forward protocol. The CRCM component identifies when the secondary relay station (SRS) is not transmitting on the relay-destination (R-D) link and the source-relay link is not blocked, and, in such instance, allows transmission of a packet from the SSD to the SRS. The SRS forwards the packet to the SDD when the CRCM component identifies when the R-D link is not blocked. The SRS and/or SSD remove the packet from their respective queues when an acknowledgement message(s) is received from the SDD and/or SRS, respectively.

    摘要翻译: 主题规范包括与主要通信系统相关联的认知中继通信管理(CRCM)组件,其中,CRCM组件控制将从至少一部分发送的通信传送到从第二源设备(SSD)传送数据到次要目标设备(SDD) )与根据指定的中继协议(例如缓冲的解码和转发协议)与辅助通信系统相关联。 CRCM组件识别辅助中继站(SRS)何时不在中继目的地(RD)链路上发送,并且源中继链路不被阻塞,并且在这种情况下,允许将数据包从SSD传输到 SRS。 当CRCM组件标识何时R-D链路不被阻塞时,SRS将数据包转发到SDD。 当从SDD和/或SRS分别接收到确认消息时,SRS和/或SSD从它们各自的队列中移除分组。

    SYSTEM AND METHOD FOR PROVIDING ENDPOINT MANAGEMENT FOR SECURITY THREATS IN A NETWORK ENVIRONMENT
    138.
    发明申请
    SYSTEM AND METHOD FOR PROVIDING ENDPOINT MANAGEMENT FOR SECURITY THREATS IN A NETWORK ENVIRONMENT 审中-公开
    为网络环境中的安全威胁提供终端管理的系统和方法

    公开(公告)号:US20120066759A1

    公开(公告)日:2012-03-15

    申请号:US12879925

    申请日:2010-09-10

    IPC分类号: G06F21/00

    摘要: An example method is provided and includes monitoring activity within an endpoint, and identifying a source associated with a particular data segment received by the endpoint. The method also includes monitoring an antivirus mechanism within the endpoint. The antivirus mechanism is configured to identify the particular data segment as being associated with malware. The source associated with the particular data segment can be communicated to any suitable next destination.

    摘要翻译: 提供了示例性方法,并且包括监视端点内的活动,以及识别与由端点接收的特定数据段相关联的源。 该方法还包括监视端点内的防病毒机制。 防病毒机制被配置为将特定数据段识别为与恶意软件相关联。 与特定数据段相关联的源可以被传送到任何合适的下一个目的地。