The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Oct. 17, 2017

Filed:

Sep. 08, 2014
Applicant:

Mitsubishi Electric Corporation, Tokyo, JP;

Inventors:

Shoji Sakurai, Tokyo, JP;

Kiyoto Kawauchi, Tokyo, JP;

Assignee:
Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01);
U.S. Cl.
CPC ...
H04L 63/1408 (2013.01); H04L 2463/121 (2013.01);
Abstract

An attack detection apparatus () collects packets a transmission source or a transmission destination of which is a protection target apparatus (), and generates packet information by setting an entry for each collected packet and describing attribute data of the packet together with occurrence time of the packet for each entry. Further, the attack detection apparatus () stores definition information which defines an extraction time width and an extraction condition for each category of attack. When a security apparatus () detects a packet which corresponds to any category, the attack detection apparatus () selects the extraction time width and the extraction condition of a category of a detection packet detected as a selection extraction time width and a selection extraction condition, specifies an extraction time range which starts from the occurrence time of the detection packet and whose width is equal to the selection extraction time width, extracts from the packet information an entry the occurrence time of which is included in the extraction time range and the attribute data of which coincides with the selection extraction condition, and determines presence or absence of an attack to the protection target apparatus () based on an extraction result.


Find Patent Forward Citations

Loading…