Protokollanalysevorrichtung, Verfahren und Programm

EP2860937 Art B1 1. Mai 2019

Anmelder: FUJITSU LIMITED 🇯🇵

Details

Veröffentlichungs-Nr.
EP2860937
Aktenzeichen
EP14183903
Anmeldetag
8. September 2014
Veröffentlichung
1. Mai 2019
Erteilung
1. Mai 2019
Rechtsraum
EP
IPC
H04L29/06
Offizieller Volltext

Abstract

A log analysis device that classifies, based on a log collected from a network device, a plurality of attack target communication devices receiving attacks from an attack source communication device includes a correlation coefficient calculation unit that calculates, based on the log, a correlation coefficient relating to the number of the attacks in a time period during which the attacks were carried out for a combination of the plurality of attack target communication devices, the time period including a detection time at which and the detection period of time during which the network device detected the attack, and an extraction unit that extracts, as a high-correlation communication device group, a combination of the plurality of attack target communication devices, for which the correlation coefficient is equal to or greater than a prescribed threshold and of which the attack source communication device is identical in the time period.

Anmelder

Firma
FUJITSU LIMITED
Land
🇯🇵 Japan
🇯🇵 Fujitsu

Japanisches Unternehmen für Informationstechnik, das Computer, Server, Netzwerktechnik sowie IT-Dienstleistungen und Softwarelösungen entwickelt und anbietet.

17.891 Patente in unserer Datenbank

Vertreten von

Noch Fragen?

Wir helfen Ihnen gerne weiter. Schreiben Sie uns einfach.

Kontakt aufnehmen