首页> 外国专利> ILLICIT COMMAND/DATA DETECTING SYSTEM, ILLICIT COMMAND/DATA DETECTING METHOD AND ILLICIT COMMAND/DATA DETECTING PROGRAM

ILLICIT COMMAND/DATA DETECTING SYSTEM, ILLICIT COMMAND/DATA DETECTING METHOD AND ILLICIT COMMAND/DATA DETECTING PROGRAM

机译:非法命令/数据检测系统,非法命令/数据检测方法和非法命令/数据检测程序

摘要

PROBLEM TO BE SOLVED: To defend against an attack by an illicit command or data of a new pattern.;SOLUTION: A signature table 25 stores a signature for characterizing the illicit command/data. A heuristic inspection means 22 has a decision criterion for inspecting whether or not an inspection object command/data includes characteristic appearing in the illicit command/data and an evaluation value for indicating a probability for expressing command/data illicit in this characteristic. A signature inspection means 21 determines the command/data as illicit when the command/data includes the signature, and delivers the command/data to the heuristic inspection means 22 when the command/data does not include the signature. The heuristic inspection means 22 inspects the command/data in a plurality of decision criteria, and determines a value as illicit when the sum of the evaluation values of the decision criteria including the characteristics exceeds an evaluation threshold, and stores the command/data in a log file 23. A signature extracting means 24 stores the signature exceeding an inspection threshold on the appearing number of the same signature in the log file 23 in a signature table 25.;COPYRIGHT: (C)2004,JPO
机译:解决的问题:防御非法命令或新模式数据的攻击。解决方案:签名表25存储用于表征非法命令/数据的签名。启发式检查装置22具有用于检查检查对象命令/数据是否包括在非法命令/数据中出现的特征的判断标准以及用于指示在该特征中表达命令/数据非法的概率的评估值。当命令/数据包括签名时,签名检查装置21将命令/数据确定为非法,并且当命令/数据不包括签名时将命令/数据传递给启发式检查装置22。启发式检查装置22检查多个决策标准中的命令/数据,并且当包括特性的决策标准的评估值之和超过评估阈值时,将该值确定为非法,并将命令/数据存储在日志文件23。签名提取装置24将超过检查阈值的签名存储在签名表25中的日志文件23中的相同签名的出现次数上。COPYRIGHT:(C)2004,JPO

著录项

  • 公开/公告号JP2004054330A

    专利类型

  • 公开/公告日2004-02-19

    原文格式PDF

  • 申请/专利权人 NEC NEXSOLUTIONS LTD;

    申请/专利号JP20020206896

  • 发明设计人 KOMINE HIKARI;MORITA MASAO;

    申请日2002-07-16

  • 分类号G06F15/00;

  • 国家 JP

  • 入库时间 2022-08-21 23:31:02

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号