System and method for real-time network traffic analysis

The invention discloses a system and method for real-time network traffic analysis. A system for detecting malicious traffic flow in a network is provided. The system includes a processor. Based on packet information received for a plurality of data packets transmitted over a network, the processor...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: NOBACHT ROBERT, SULLIVAN SHAWN C, SACKMAN RONALD WARD
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
container_end_page
container_issue
container_start_page
container_title
container_volume
creator NOBACHT ROBERT
SULLIVAN SHAWN C
SACKMAN RONALD WARD
description The invention discloses a system and method for real-time network traffic analysis. A system for detecting malicious traffic flow in a network is provided. The system includes a processor. Based on packet information received for a plurality of data packets transmitted over a network, the processor is programmed to calculate an interval of arrival time and a packet duration of the plurality of data packets. The processor is also programmed to filter the packet information to remove noise. The processor is further programmed to generate at least one histogram based on the packet information, the interval of arrival time, and the packet duration. Further, the processor is programmed to generate a power spectral density estimate based on the packet information, the interval of arrival time, and the packet duration. Further, the processor is programmed to analyze the at least one histogram and the power spectral density estimate to detect one or more unexpected data streams. Further, the processor is programmed t
format Patent
fullrecord <record><control><sourceid>epo_EVB</sourceid><recordid>TN_cdi_epo_espacenet_CN114650161A</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>CN114650161A</sourcerecordid><originalsourceid>FETCH-epo_espacenet_CN114650161A3</originalsourceid><addsrcrecordid>eNrjZLAIriwuSc1VSMxLUchNLcnIT1FIyy9SKEpNzNEtycxNVchLLSnPL8pWKClKTEvLTAYqTMypLM4s5mFgTUvMKU7lhdLcDIpuriHOHrqpBfnxqcUFicmpQK3xzn6GhiZmpgaGZoaOxsSoAQACIS4-</addsrcrecordid><sourcetype>Open Access Repository</sourcetype><iscdi>true</iscdi><recordtype>patent</recordtype></control><display><type>patent</type><title>System and method for real-time network traffic analysis</title><source>esp@cenet</source><creator>NOBACHT ROBERT ; SULLIVAN SHAWN C ; SACKMAN RONALD WARD</creator><creatorcontrib>NOBACHT ROBERT ; SULLIVAN SHAWN C ; SACKMAN RONALD WARD</creatorcontrib><description>The invention discloses a system and method for real-time network traffic analysis. A system for detecting malicious traffic flow in a network is provided. The system includes a processor. Based on packet information received for a plurality of data packets transmitted over a network, the processor is programmed to calculate an interval of arrival time and a packet duration of the plurality of data packets. The processor is also programmed to filter the packet information to remove noise. The processor is further programmed to generate at least one histogram based on the packet information, the interval of arrival time, and the packet duration. Further, the processor is programmed to generate a power spectral density estimate based on the packet information, the interval of arrival time, and the packet duration. Further, the processor is programmed to analyze the at least one histogram and the power spectral density estimate to detect one or more unexpected data streams. Further, the processor is programmed t</description><language>chi ; eng</language><subject>ELECTRIC COMMUNICATION TECHNIQUE ; ELECTRICITY ; TRANSMISSION ; TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</subject><creationdate>2022</creationdate><oa>free_for_read</oa><woscitedreferencessubscribed>false</woscitedreferencessubscribed></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><linktohtml>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&amp;date=20220621&amp;DB=EPODOC&amp;CC=CN&amp;NR=114650161A$$EHTML$$P50$$Gepo$$Hfree_for_read</linktohtml><link.rule.ids>230,308,780,885,25564,76547</link.rule.ids><linktorsrc>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&amp;date=20220621&amp;DB=EPODOC&amp;CC=CN&amp;NR=114650161A$$EView_record_in_European_Patent_Office$$FView_record_in_$$GEuropean_Patent_Office$$Hfree_for_read</linktorsrc></links><search><creatorcontrib>NOBACHT ROBERT</creatorcontrib><creatorcontrib>SULLIVAN SHAWN C</creatorcontrib><creatorcontrib>SACKMAN RONALD WARD</creatorcontrib><title>System and method for real-time network traffic analysis</title><description>The invention discloses a system and method for real-time network traffic analysis. A system for detecting malicious traffic flow in a network is provided. The system includes a processor. Based on packet information received for a plurality of data packets transmitted over a network, the processor is programmed to calculate an interval of arrival time and a packet duration of the plurality of data packets. The processor is also programmed to filter the packet information to remove noise. The processor is further programmed to generate at least one histogram based on the packet information, the interval of arrival time, and the packet duration. Further, the processor is programmed to generate a power spectral density estimate based on the packet information, the interval of arrival time, and the packet duration. Further, the processor is programmed to analyze the at least one histogram and the power spectral density estimate to detect one or more unexpected data streams. Further, the processor is programmed t</description><subject>ELECTRIC COMMUNICATION TECHNIQUE</subject><subject>ELECTRICITY</subject><subject>TRANSMISSION</subject><subject>TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</subject><fulltext>true</fulltext><rsrctype>patent</rsrctype><creationdate>2022</creationdate><recordtype>patent</recordtype><sourceid>EVB</sourceid><recordid>eNrjZLAIriwuSc1VSMxLUchNLcnIT1FIyy9SKEpNzNEtycxNVchLLSnPL8pWKClKTEvLTAYqTMypLM4s5mFgTUvMKU7lhdLcDIpuriHOHrqpBfnxqcUFicmpQK3xzn6GhiZmpgaGZoaOxsSoAQACIS4-</recordid><startdate>20220621</startdate><enddate>20220621</enddate><creator>NOBACHT ROBERT</creator><creator>SULLIVAN SHAWN C</creator><creator>SACKMAN RONALD WARD</creator><scope>EVB</scope></search><sort><creationdate>20220621</creationdate><title>System and method for real-time network traffic analysis</title><author>NOBACHT ROBERT ; SULLIVAN SHAWN C ; SACKMAN RONALD WARD</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-epo_espacenet_CN114650161A3</frbrgroupid><rsrctype>patents</rsrctype><prefilter>patents</prefilter><language>chi ; eng</language><creationdate>2022</creationdate><topic>ELECTRIC COMMUNICATION TECHNIQUE</topic><topic>ELECTRICITY</topic><topic>TRANSMISSION</topic><topic>TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</topic><toplevel>online_resources</toplevel><creatorcontrib>NOBACHT ROBERT</creatorcontrib><creatorcontrib>SULLIVAN SHAWN C</creatorcontrib><creatorcontrib>SACKMAN RONALD WARD</creatorcontrib><collection>esp@cenet</collection></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext_linktorsrc</fulltext></delivery><addata><au>NOBACHT ROBERT</au><au>SULLIVAN SHAWN C</au><au>SACKMAN RONALD WARD</au><format>patent</format><genre>patent</genre><ristype>GEN</ristype><title>System and method for real-time network traffic analysis</title><date>2022-06-21</date><risdate>2022</risdate><abstract>The invention discloses a system and method for real-time network traffic analysis. A system for detecting malicious traffic flow in a network is provided. The system includes a processor. Based on packet information received for a plurality of data packets transmitted over a network, the processor is programmed to calculate an interval of arrival time and a packet duration of the plurality of data packets. The processor is also programmed to filter the packet information to remove noise. The processor is further programmed to generate at least one histogram based on the packet information, the interval of arrival time, and the packet duration. Further, the processor is programmed to generate a power spectral density estimate based on the packet information, the interval of arrival time, and the packet duration. Further, the processor is programmed to analyze the at least one histogram and the power spectral density estimate to detect one or more unexpected data streams. Further, the processor is programmed t</abstract><oa>free_for_read</oa></addata></record>
fulltext fulltext_linktorsrc
identifier
ispartof
issn
language chi ; eng
recordid cdi_epo_espacenet_CN114650161A
source esp@cenet
subjects ELECTRIC COMMUNICATION TECHNIQUE
ELECTRICITY
TRANSMISSION
TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION
title System and method for real-time network traffic analysis
url https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-01-02T17%3A23%3A56IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-epo_EVB&rft_val_fmt=info:ofi/fmt:kev:mtx:patent&rft.genre=patent&rft.au=NOBACHT%20ROBERT&rft.date=2022-06-21&rft_id=info:doi/&rft_dat=%3Cepo_EVB%3ECN114650161A%3C/epo_EVB%3E%3Curl%3E%3C/url%3E&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_id=info:pmid/&rfr_iscdi=true