-
公开(公告)号:US20210105293A1
公开(公告)日:2021-04-08
申请号:US16810379
申请日:2020-03-05
Applicant: Booz Allen Hamilton Inc.
Inventor: Michael ZARON , Daniel YEAGER , Wan WEN , Malcolm MULONG , James PETERSEN , Laurian VEGA
Abstract: A system and method for anomaly detection in a networked control system can include: receiving information transmitted over a network at a device; parsing the information at the device to determine whether information specified as relevant to anomaly detection is contained therein, wherein if relevant information is identified, then extracting the relevant information, including, for example protocol information, and saving the relevant information in a first dataset, and if relevant information is not identified, saving the information in a second dataset; storing the first and second datasets on a memory to train a prediction model for anomaly detection; and monitoring network traffic using the prediction model for anomaly detection.
-
公开(公告)号:US20210044599A1
公开(公告)日:2021-02-11
申请号:US16537013
申请日:2019-08-09
Applicant: Booz Allen Hamilton Inc.
Inventor: Sean STANLEY , James PETERSEN , Christopher FORANT , Matthew RAUSCH
IPC: H04L29/06
Abstract: A system for defending a network against one or more cyber-threats. The system can include a network bus that includes a first node and a second node, such that network traffic flows from the first node to the second node. The system can include an intrusion defense unit connected to the network bus, such that network traffic between the first node and the second node passes through the intrusion defense unit, wherein when a potential cyber-threat is detected in the network traffic, the intrusion defense unit is configured to engage an associated switch to filter the network traffic until the cyber-threat is neutralized.
-