Intrusion detection system
    9.
    发明申请
    Intrusion detection system 审中-公开
    入侵检测系统

    公开(公告)号:US20060161982A1

    公开(公告)日:2006-07-20

    申请号:US11037695

    申请日:2005-01-18

    IPC分类号: G06F12/14

    CPC分类号: G06F21/554 G06F21/53

    摘要: An intrusion detection system (IDS), method of protecting computers against intrusions and program product therefor. The IDS determines which applications are to run in native environment (NE) and places the remaining applications in a sandbox. Some of the applications in sandboxes may be placed in a personalized virtual environment (PVE) in the sandbox. Upon detecting an attempted attack, a dynamic honeypot may be started for an application in a sandbox and not in a PVE. A virtualized copy of system resources may be created for each application in a sandbox and provided to the corresponding application in the respective sandbox.

    摘要翻译: 入侵检测系统(IDS),防止计算机入侵的方法和程序产品。 IDS确定在本地环境(NE)中运行哪些应用程序,并将剩余的应用程序放在沙箱中。 砂箱中的一些应用程序可能会放置在沙箱中的个性化虚拟环境(PVE)中。 在检测到尝试的攻击时,可以为沙箱而不是PVE中的应用启动动态蜜罐。 可以为沙箱中的每个应用程序创建系统资源的虚拟副本,并提供给相应沙箱中的相应应用程序。

    Cost effective incident response
    10.
    发明申请
    Cost effective incident response 审中-公开
    成本有效的事件响应

    公开(公告)号:US20050257269A1

    公开(公告)日:2005-11-17

    申请号:US11121359

    申请日:2005-05-03

    IPC分类号: H04L9/00 H04L29/06

    CPC分类号: H04L63/1416 H04L63/145

    摘要: A response system which produces strategies to contain hosts compromised by a worm. One minimizes the damage so caused and the loss of business values induced by actions taken to protect a network. The approach uses logical representation of the target network. By abstracting low level information such as switches, routers and their connectivities, theoretical algorithms are used to find the optimal containment.

    摘要翻译: 一种响应系统,其产生策略以包含受蠕虫感染的主机。 一个最小化由此引起的损害,以及为保护网络而采取的行动引起的业务价值的损失。 该方法使用目标网络的逻辑表示。 通过抽象交换机,路由器及其连通性等低级别信息,可以使用理论算法来找到最优的遏制。