SYSTEM AND METHOD OF CORRELATING EVENTS FOR DETECTING INFORMATION SECURITY INCIDENT Russian patent published in 2020 - IPC G06F21/55 

Abstract RU 2739864 C1

FIELD: information security.

SUBSTANCE: invention relates to information security. Technical result is achieved by obtaining, by means of correlation means, an event from at least one event generation means; for events, the creation time of which lies within a given period of time, setting, using the correlation means, at least one order of events; using correlation means of correlation rule for obtained events with due allowance for each specified sequence; when performing at least one detection correlation rule using the information security incident correlation means.

EFFECT: technical result consists in improvement of accuracy of detection of information security incidents in cyber-physical systems.

4 cl, 8 dwg, 2 tbl

Similar patents RU2739864C1

Title Year Author Number
SYSTEM AND METHOD OF STAGED INCREASE OF INFORMATION SAFETY OF ELEMENTS OF PROCESS SYSTEM 2019
  • Dukhvalov Andrej Petrovich
  • Dyakin Pavel Vladimirovich
  • Kulagin Dmitrij Aleksandrovich
RU2728504C1
SYSTEM AND METHOD OF NETWORK UNIT DEFINITION USING RULES OF INVENTORY 2019
  • Chistyakov Aleksandr Sergeevich
  • Romanenko Aleksej Mikhajlovich
RU2746101C2
METHOD FOR ADJUSTING THE PARAMETERS OF A MACHINE LEARNING MODEL IN ORDER TO IDENTIFY FALSE TRIGGERING AND INFORMATION SECURITY INCIDENTS 2020
  • Filonov Pavel Vladimirovich
  • Soldatov Sergej Vladimirovich
  • Udimov Daniil Alekseevich
RU2763115C1
METHOD FOR PROCESSING INFORMATION SECURITY EVENTS PRIOR TO TRANSMISSION FOR ANALYSIS 2020
  • Filonov Pavel Vladimirovich
  • Soldatov Sergej Vladimirovich
  • Udimov Daniil Alekseevich
RU2762528C1
METHOD FOR FILTERING EVENTS FOR TRANSMISSION TO REMOTE DEVICE 2022
  • Pintiiskii Vladislav Valerevich
  • Tarakanov Dmitrii Vladimirovich
  • Shulmin Aleksei Sergeevich
  • Ovcharik Vladislav Ivanovich
  • Kuskov Vladimir Anatolevich
RU2813239C1
SYSTEM AND METHOD OF CONTROLLING ACCESS TO CYBER PHYSICAL SYSTEM 2019
  • Zorin Sergej Gennadievich
  • Shadrin Aleksandr Viktorovich
RU2726884C1
METHOD FOR DIAGNOSING AND MONITORING ANOMALIES IN A CYBER-PHYSICAL SYSTEM 2021
  • Lavrentev Andrei Borisovich
  • Shkulev Viacheslav Igorevich
  • Travov Aleksandr Viktorovich
  • Vorontsov Artem Mikhailovich
  • Nechiporuk Artem Mikhailovich
  • Mamaev Maksim Aleksandrovich
  • Ivanov Dmitrii Aleksandrovich
  • Demidov Nikolai Nikolaevich
RU2784981C1
METHOD OF DETERMINING ANOMALY SOURCES IN A CYBER-PHYSICAL SYSTEM 2020
  • Lavrentev Andrej Borisovich
  • Vorontsov Artem Mikhajlovich
  • Filonov Pavel Vladimirovich
  • Shalyga Dmitrij Konstantinovich
  • Shkulev Vyacheslav Igorevich
  • Demidov Nikolaj Nikolaevich
  • Ivanov Dmitrij Aleksandrovich
RU2749252C1
SYSTEM AND METHOD OF GENERATING DATA FOR MONITORING CYBER-PHYSICAL SYSTEM FOR PURPOSE OF EARLY DETECTION OF ANOMALIES IN GRAPHICAL USER INTERFACE 2018
  • Lavrentev Andrej Borisovich
  • Vorontsov Artem Mikhajlovich
  • Filonov Pavel Vladimirovich
  • Shalyga Dmitrij Konstantinovich
  • Shkulev Vyacheslav Igorevich
  • Demidov Nikolaj Nikolaevich
  • Ivanov Dmitrij Aleksandrovich
RU2724716C1
SYSTEM AND METHOD FOR DETERMINING ANOMALY SOURCE IN CYBER-PHYSICAL SYSTEM HAVING CERTAIN CHARACTERISTICS 2018
  • Lavrentev Andrej Borisovich
  • Vorontsov Artem Mikhajlovich
  • Filonov Pavel Vladimirovich
  • Shalyga Dmitrij Konstantinovich
  • Shkulev Vyacheslav Igorevich
  • Demidov Nikolaj Nikolaevich
  • Ivanov Dmitrij Aleksandrovich
RU2724075C1

RU 2 739 864 C1

Authors

Lyukshin Ivan Stanislavovich

Kiryukhin Andrej Aleksandrovich

Lukiyan Dmitrij Sergeevich

Filonov Pavel Vladimirovich

Dates

2020-12-29Published

2019-07-17Filed