FIELD: information technology.
SUBSTANCE: method of detecting computer attacks to networked computer system comprising at least one computer connected to the network and having an installed operating system and installed application software comprising the traffic analysis system in which to analyze the packets received from the network the certain parameters are selected and their values are calculated, which are then compared with the reference values, and the fact of presence of the single or combined simultaneous attack and definition of types of attacks is determined by combination of the set conditions for the parameters. For processing the data packets received from the network the traffic analysis system is used, which enables to calculate the traffic parameters in real time scale.
EFFECT: detection of computer attacks of various types, combined simultaneous attacks of various types, and definition of types of attacks.
13 dwg, 3 tbl
Title | Year | Author | Number |
---|---|---|---|
COMPUTER ATTACKS DETECTION METHOD | 2017 |
|
RU2683631C1 |
METHOD FOR DETECTING ANOMALOUS WORK OF NETWORK SERVER (OPTIONS) | 2016 |
|
RU2630415C2 |
METHOD OF DETECTION OF COMPUTER ATTACKS IN INFORMATION AND TELECOMMUNICATION NETWORK | 2013 |
|
RU2531878C1 |
METHOD FOR PROTECTING INFORMATION AND TELECOMMUNICATION NETWORK FROM PASSIVE COMPUTER ATTACKS | 2016 |
|
RU2642403C1 |
METHOD OF MANAGING CONNECTIONS IN FIREWALL | 2012 |
|
RU2517411C1 |
DETECTOR OF REMOTE COMPUTER ATTACKS | 2014 |
|
RU2540838C1 |
SYSTEM AND METHOD FOR ANALYSING INCOMING TRAFFIC FLOW | 2023 |
|
RU2812087C1 |
METHOD OF DETECTING NETWORK ATTACKS BASED ON ANALYSIS OF TRAFFIC TIME STRUCTURE | 2017 |
|
RU2680756C1 |
SYSTEM AND METHOD OF REDUCING FALSE RESPONSES WHEN DETECTING NETWORK ATTACK | 2011 |
|
RU2480937C2 |
METHOD OF DETECTING NETWORK ATTACKS BASED ON ANALYZING FRACTAL TRAFFIC CHARACTERISTICS IN AN INFORMATION COMPUTER NETWORK | 2019 |
|
RU2713759C1 |
Authors
Dates
2015-01-10—Published
2013-07-24—Filed