Method and System for Detecting Attacks in Wireless Data Communications Networks
    1.
    发明申请
    Method and System for Detecting Attacks in Wireless Data Communications Networks 有权
    用于检测无线数据通信网络中的攻击的方法和系统

    公开(公告)号:US20080043686A1

    公开(公告)日:2008-02-21

    申请号:US11794249

    申请日:2004-12-30

    IPC分类号: H04Q7/24

    摘要: A method of detecting attacks in a wireless data communications network, includes: monitoring wireless traffic over the wireless data communications network; deriving a first network state from the monitored wireless traffic; acquiring trusted information indicative of a wireless network state from at least one apparatus of a network infrastructure; establishing a second network state based on the acquired trusted information; comparing the derived first network state with the second network state, and determining a wireless network attack in case of incoherence between the derived first network state compared to the second network state.

    摘要翻译: 一种检测无线数据通信网络中的攻击的方法,包括:监测无线数据通信网络上的无线流量; 从所监视的无线业务导出第一网络状态; 从网络基础设施的至少一个设备获取指示无线网络状态的可信信息; 基于所获取的可信信息建立第二网络状态; 将导出的第一网络状态与第二网络状态进行比较,以及在与所述第二网络状态相比所导出的第一网络状态之间的不一致的情况下确定无线网络攻击。

    Method and system for detecting attacks in wireless data communications networks
    2.
    发明授权
    Method and system for detecting attacks in wireless data communications networks 有权
    用于检测无线数据通信网络中的攻击的方法和系统

    公开(公告)号:US08369830B2

    公开(公告)日:2013-02-05

    申请号:US11794249

    申请日:2004-12-30

    IPC分类号: H04M1/66

    摘要: A method of detecting attacks in a wireless data communications network, includes: monitoring wireless traffic over the wireless data communications network; deriving a first network state from the monitored wireless traffic; acquiring trusted information indicative of a wireless network state from at least one apparatus of a network infrastructure; establishing a second network state based on the acquired trusted information; comparing the derived first network state with the second network state, and determining a wireless network attack in case of incoherence between the derived first network state compared to the second network state.

    摘要翻译: 一种检测无线数据通信网络中的攻击的方法,包括:监测无线数据通信网络上的无线流量; 从所监视的无线业务导出第一网络状态; 从网络基础设施的至少一个设备获取指示无线网络状态的可信信息; 基于所获取的可信信息建立第二网络状态; 将导出的第一网络状态与第二网络状态进行比较,以及在与所述第二网络状态相比所得到的第一网络状态之间的不相干的情况下确定无线网络攻击。

    Method and System for Identifying Malicious Messages in Mobile Communication Networks, Related Network and Computer Program Product Therefor
    3.
    发明申请
    Method and System for Identifying Malicious Messages in Mobile Communication Networks, Related Network and Computer Program Product Therefor 有权
    用于识别移动通信网络中的恶意消息的方法和系统,相关网络和计算机程序产品

    公开(公告)号:US20120151585A1

    公开(公告)日:2012-06-14

    申请号:US12225684

    申请日:2006-03-27

    IPC分类号: G06F21/00

    摘要: A system for identifying malicious messages transmitted over a mobile communication network includes: sentinel modules associated with respective mobile terminals in the network for monitoring messages passing therethrough, wherein the sentinel modules identify as a candidate malicious message, any message passing through the mobile terminals and failing to comply with a first set of patterns and issue a corresponding sentinel identification message; a set of probe modules for monitoring messages transmitted over the network, wherein the probe modules identify as a candidate malicious message any message transmitted over the network and failing to comply with a second set of patterns and issue a corresponding probe identification message; and preferably at least one client honeypot module for receiving and processing any messages sent thereto to produce corresponding processing results, wherein the client honeypot module identifies as a candidate malicious message any message producing a processing result failing to comply with a third set of patterns and issues a corresponding client honeypot identification message.

    摘要翻译: 用于识别通过移动通信网络发送的恶意消息的系统包括:与网络中的相应移动终端相关联的哨兵模块,用于监视通过其中的消息,其中,所述哨兵模块标识为候选恶意消息,通过所述移动终端的任何消息失败 遵守第一组模式并发出相应的哨兵识别信息; 一组用于监视通过网络发送的消息的探测模块,其中探测模块将通过网络发送的任何消息标识为候选恶意消息,并且不符合第二组模式并发出相应的探测器识别消息; 并且优选地是至少一个客户端蜜罐模块,用于接收和处理发送到其上的任何消息以产生相应的处理结果,其中客户端蜜罐模块将任何消息产生为不符合第三组模式和问题的处理结果的任何消息 相应的客户端蜜罐识别消息。

    Method and system for identifying malicious messages in mobile communication networks, related network and computer program product therefor
    4.
    发明授权
    Method and system for identifying malicious messages in mobile communication networks, related network and computer program product therefor 有权
    用于识别移动通信网络中的恶意消息的方法和系统,相关网络和计算机程序产品

    公开(公告)号:US08443446B2

    公开(公告)日:2013-05-14

    申请号:US12225684

    申请日:2006-03-27

    IPC分类号: H04L29/06

    摘要: A system for identifying malicious messages transmitted over a mobile communication network includes: sentinel modules associated with respective mobile terminals in the network for monitoring messages passing therethrough, wherein the sentinel modules identify as a candidate malicious message, any message passing through the mobile terminals and failing to comply with a first set of patterns and issue a corresponding sentinel identification message; a set of probe modules for monitoring messages transmitted over the network, wherein the probe modules identify as a candidate malicious message any message transmitted over the network and failing to comply with a second set of patterns and issue a corresponding probe identification message; and preferably at least one client honeypot module for receiving and processing any messages sent thereto to produce corresponding processing results, wherein the client honeypot module identifies as a candidate malicious message any message producing a processing result failing to comply with a third set of patterns and issues a corresponding client honeypot identification message.

    摘要翻译: 用于识别通过移动通信网络发送的恶意消息的系统包括:与网络中的相应移动终端相关联的哨兵模块,用于监视通过其中的消息,其中,所述哨兵模块标识为候选恶意消息,通过所述移动终端的任何消息失败 遵守第一组模式并发出相应的哨兵识别信息; 一组用于监视通过网络发送的消息的探测模块,其中探测模块将通过网络发送的任何消息标识为候选恶意消息,并且不符合第二组模式并发出相应的探测器识别消息; 并且优选地是至少一个客户端蜜罐模块,用于接收和处理发送到其上的任何消息以产生相应的处理结果,其中客户端蜜罐模块将任何消息产生为不符合第三组模式和问题的处理结果的任何消息 相应的客户端蜜罐识别消息。