FIELD: communication technology.
SUBSTANCE: invention relates to a method for filtering attacking streams aimed at the communication module. Several aggregates are defined, where each aggregate is the result of combining several incoming data streams received over a given period of time. Several first measurement vectors are determined, each of which is associated with one of the specified aggregates and contains the values of the first characteristic parameters of the aggregate with which this vector is associated. These first several measurement vectors are projected into at least one subspace defined by the first characteristic parameters. Another aggregate is determined, which is the result of combining several incoming data streams received during a different time period. Another first measurement vector is determined, associated with the specified other aggregate. The specified other first dimension vector is projected into at least one subspace. An estimate of deviation from the norm is determined depending on the results of projecting the specified other first measurement vector and projecting the totality of the specified several first measurement vectors, and then, if the estimate of deviation from the norm falls into the zone of doubt about the presence of attacking flows, several second measurement vectors are determined, each of which is associated with one of the specified aggregates. Another second measurement vector associated with another aggregate is determined. The presence or absence of an attack is detected by analyzing another second measurement vector.
EFFECT: increase in the probability of detecting an attacking stream.
11 cl, 10 dwg
Title | Year | Author | Number |
---|---|---|---|
APPARATUS AND METHOD OF CLASSIFYING MOVEMENT OF OBJECTS IN MONITORING ZONE | 2009 |
|
RU2509355C2 |
PROCESSING DEVICE AND METHOD OF DETERMINING MOVEMENT OF A SUBJECT | 2017 |
|
RU2715438C1 |
METHOD FOR PREDICTING TRAFFIC DYNAMICS IN A ROAD SYSTEM | 2018 |
|
RU2751381C2 |
METHOD OF ESTIMATING NAVIGATION STATE IN CONDITIONS OF LIMITED POSSIBILITY OF OBSERVATION | 2015 |
|
RU2701194C2 |
INFORMATION PROCESSING DEVICE, A METHOD OF PROCESSING INFORMATION, A SYSTEM FOR PROCESSING INFORMATION, AND SOFTWARE | 2017 |
|
RU2747860C2 |
SYSTEM AND METHOD FOR SIGNALLING SEGMENT ENCRYPTION AND KEY DERIVATION FOR ADAPTIVE STREAMING | 2013 |
|
RU2575021C1 |
METHOD OF REGULATION | 2012 |
|
RU2585377C2 |
POWER PLANT EQUIPMENT FAULT DIAGNOSIS SYSTEM | 2023 |
|
RU2815985C1 |
METHOD AND DEVICE FOR DECREASING RANK ESTIMATE OF CHANNEL IN COMMUNICATION SYSTEM | 2001 |
|
RU2292655C2 |
WINDOWED STATISTICAL ANALYSIS FOR ANOMALY DETECTION IN GEOPHYSICAL DATASETS | 2011 |
|
RU2554895C2 |
Authors
Dates
2022-08-11—Published
2019-04-04—Filed