DEVICE FOR PREVENTING, DETECTING AND RESPONDING TO SECURITY THREATS

A device (100) to prevent, detect and respond to one or more security threats between one or more controlled hosts (202) and one or more services (252) accessible from the controlled host. The device determines the authenticity of a user of a controlled host and activates user specific configuration...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: VANRIPER, RYAN A, HAIGH, J. THOMAS, HARP, STEVEN A, O'BRIEN, RICHARD C, GOHDE, JONATHAN A, PAYNE, CHARLES N
Format: Patent
Sprache:eng ; fre
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:A device (100) to prevent, detect and respond to one or more security threats between one or more controlled hosts (202) and one or more services (252) accessible from the controlled host. The device determines the authenticity of a user of a controlled host and activates user specific configurations under which the device monitors and controls all communications between the user, the controlled host and the services. As such, the device ensures the flow of only legitimate and authorized communications. Suspicious communications, such as those with malicious intent, malformed packets, among others, are stopped, reported for analysis and action. Additionally, upon detecting suspicious communication, the device modifies the activated user specific configurations under which the device monitors and controls the communications between the user, the controlled host and the services.