METHOD AND SYSTEM FOR DISTINGUISHING RELEVANT NETWORK SECURITY THREATS USING COMPARISON OF REFINED INTRUSION DETECTION AUDITS AND INTELLIGENT SECURITY ANALYSIS

An apparatus, a method, and a computer program are provided for distinguishi ng relevant security threats. With conventional computer systems, distinguishin g security threats from actual security threats is a complex and difficult tas k because of the general inability to quantify a ~threat~. By th...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: JULISCH, KLAUS, GREENE, DAVID PERRY, ULERICH, RHYS, SEEBER, JONATHAN MICHAEL, CHAWLA, ANIL JAGDISH, RANKIN, AARON EDWARD FREDRICK
Format: Patent
Sprache:eng ; fre
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:An apparatus, a method, and a computer program are provided for distinguishi ng relevant security threats. With conventional computer systems, distinguishin g security threats from actual security threats is a complex and difficult tas k because of the general inability to quantify a ~threat~. By the use of an intelligent conceptual clustering technique, threats can be accurately distinguished from benign behaviors. Thus, electronic commerce, and Information Technology systems generally, can be made safer without sacrificing efficiency.