The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Sep. 22, 2009

Filed:

Dec. 29, 2005
Applicants:

Christopher A. Church, Houston, TX (US);

Mikhail Govshteyn, Houston, TX (US);

Christopher D. Baker, Pearland, TX (US);

Christopher D. Holm, Houston, TX (US);

Inventors:

Christopher A. Church, Houston, TX (US);

Mikhail Govshteyn, Houston, TX (US);

Christopher D. Baker, Pearland, TX (US);

Christopher D. Holm, Houston, TX (US);

Assignee:

Alert Logic, Inc., Houston, TX (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G08B 23/00 (2006.01);
U.S. Cl.
CPC ...
Abstract

Embodiments of the invention provide a security expert system (SES) that automates intrusion detection analysis and threat discovery that can use fuzzy logic and forward-chaining inference engines to approximate human reasoning process. Embodiments of the SES can analyze incoming security events and generate a threat rating that indicates the likelihood of an event or a series of events being a threat. In one embodiment, the threat rating is determined based on an attacker rating, a target rating, a valid rating, and, optionally, a negative rating. In one embodiment, the threat rating may be affected by a validation flag. The SES can analyze the criticality of assets and calibrate/recalibrate the severity of an attack accordingly to allow for triage. The asset criticality can have a user-defined value. This ability allows the SES to protect and defend critical network resources in a discriminating and selective manner if necessary (e.g., many attacks).


Find Patent Forward Citations

Loading…