Match Document Document Title
7437767 Method for enabling a trusted dialog for collection of sensitive data  
The present invention is a method for enabling a trusted dialog for collection of sensitive data, including the steps of: storing a personal security token specified by a user; receiving an input...
7437764 Vulnerability assessment of disk images  
Images are used to safeguarding machines by assessing vulnerabilities in the image. Where assessing vulnerabilities includes both detection and repair, vulnerabilities are detected, a security...
7433923 Authorized email control system  
An authorized email control system receives email destined for a particular user. Inclusive, temporary and exclusive address books are provided for the user. The inclusive address book lists all...
7434260 Method for detecting malicious code patterns in consideration of control and data flows  
The present invention relates to a method for detecting malicious code patterns in consideration of control and data flows. In the method of the present invention, a malicious code pattern is...
7434261 System and method of identifying the source of an attack on a computer network  
The present invention provides a system and method of tracing the spread of computer malware in a communication network. One aspect of the present invention is a method that traces the spread of...
7434020 Overwrite detection diagnostic for memory heap  
A data structure within a block of allocable memory of a memory structure such as a heap is used to store an overwrite detection pattern. When memory is passed back to the operation system for any...
7434259 Method for prompting a user to install and execute an unauthenticated computer application  
The present invention prompts a user to accept, install and execute unauthenticated computer applications. When the user accepts the application, information relating to the application files may...
7430758 Prompt authentication  
An authentication graphic included in a password prompt can allow a user to visually authenticate the password prompt. In one embodiment, the present invention includes a client device receiving a...
7426749 Distributed computation in untrusted computing environments using distractive computational units  
An apparatus, program product and method initiate the execution of distractive computational units along with the execution of other computational units on an untrusted computer to inhibit the...
7424619 System and methods for anomaly detection and adaptive learning  
In a method of generating an anomaly detection model for classifying activities of a computer system, using a training set of data corresponding to activity on the computer system, the training set...
7424744 Signature based network intrusion detection system and method  
A signature based intrusion detection method and system are disclosed. A method for detecting intrusions on a network generally comprises storing signature profiles identifying patterns associated...
7424745 Anti-virus fix for intermittently connected client computers  
A method and system is described for a wireless client computer to be connected via an access point to a network only if the wireless client computer has executed all requisite anti-virus programs....
7424610 Remote provisioning of secure systems for mandatory control  
A method, apparatus, and system are provided for remotely provisioning an operating system for implementing mandatory access controls on a computer system. According to one embodiment, platform...
7424742 Dynamic security events and event channels in a network security system  
A query for security event can be represented as an event channel. The event channel may be displayed as a grid of events. In one embodiment, the events included in the event channel are dynamic...
7424743 Apparatus for verifying the integrity of computer networks and implementation of countermeasures  
A security system for a computer network that has a plurality of devices connected thereto comprises a security subsystem, a master system and a secure link. The security subsystem is connected to...
7424741 Method and system for prevention of network denial-of-service attacks  
An approach for preventing denial-of-service attacks on Secure Sockets Layer (“SSL”) protocol is described. Queues are generated for handshake state connections and data transmission...
7424746 Intrusion detection and vulnerability assessment system, method and computer program product  
A system and associated method/computer program product are provided including an intrusion detection tool for determining whether network communications violate at least one of a plurality of...
7421079 Method and apparatus for secure key replacement  
A method, and a corresponding apparatus, provide for remote, secure replacement of private keys in a private key infrastructure. The method is implemented as a secure key replacement protocol...
7421737 Evasion detection  
Evasion detection is disclosed. Techniques are provided for network security, including comparing a received header value to a baseline header value, determining based on the comparison whether a...
7418734 Method and system for detecting privilege escalation vulnerabilities in source code  
A method and system of detecting vulnerabilities in source code. Source code is parsed into an intermediate representation. Models are derived for the code and the models are then analyzed in...
7418733 Determining threat level associated with network activity  
Network devices such as intrusion detection systems, routers, firewalls, servers, and other network devices are monitored to aggregate all event data generated by monitored devices to provide a...
7418730 Automatic client responses to worm or hacker attacks  
A system in which a networked device automatically evaluates hacker attack notification information and, based thereon, selects and executes responses to the attack. The notification may include...
7418731 Method and system for caching at secure gateways  
A computer gateway for an intranet of computers, including a scanner for scanning incoming files from the Internet and deriving security profiles therefor, the security profiles being lists of...
7418729 Heuristic detection of malicious computer code by page tracking  
To detect a computer virus in a host file ( 100 ), an emulating module ( 414 ) emulates the host file ( 100 ) in a virtual machine ( 422 ) having a virtual memory ( 426 ). While emulating the host...
7415513 Method, apparatus, system, and article of manufacture for generating a response in an offload adapter  
Provided are a method, apparatus, system, and article of manufacture, wherein in certain embodiments a network adapter having an offload protocol stack receives a query. The offload protocol stack...
7412723 Method and system for morphing honeypot with computer security incident correlation  
A method, system, apparatus, or computer program product is presented for morphing a honeypot system on a dynamic and configurable basis. The morphing honeypot emulates a variety of services while...
7412722 Detection of softswitch attacks  
A security system ( 150 ) in a network includes a softswitch ( 440 ) and a detection unit ( 420 ). The detection unit ( 420 ) detects activity directed to the softswitch ( 440 ) and records the...
7412721 Method of and system for managing information, and computer product  
The system includes the monitor agent that analyzes log of an entity. When an abnormality is detected, the monitor agent notifies about the abnormality to the control manager. The control manager...
7409541 Method of transporting packets between an access interface of a subscriber installation and a shared network, and access interface implementing such method  
For transporting packets between an access interface of a subscriber installation and a concentrating router of a shared network the access interface carries out control operations on streams of...
7409716 System for intrusion detection  
A system a wireless ad hoc network. The system includes a plurality of nodes and a plurality of protocols for governing transmission of data between the plurality of nodes. The operation of the...
7409713 Method of protecting software code  
A method of protecting application program software includes steps of (a) actuating a tracer function to copy 2 1 to n instructions from the API code; (b) storing and executing the instructions;...
7409712 Methods and apparatus for network message traffic redirection  
Conventional methods of addressing a Distributed Denial of Service attack include taking the target node offline, and routing all traffic to an alternate countermeasure, or “sinkhole” router,...
7409715 Mechanism for detection of attacks based on impersonation in a wireless network  
An impersonation detection system for a wireless node of a wireless communication network is described. The system comprises an intrusion detection module for correlating the original data frames...
7409714 Virtual intrusion detection system and method of using same  
A method of forming a virtual intrusion detection system includes the step of positioning a set of sensors in a network environment, each sensor supporting multiple logical traffic paths. The...
7409711 Method and apparatus for troubleshooting a security gate system remotely  
A system and method for troubleshooting the installation, operation and troubleshooting software on a remote security system computer is disclosed. The system by the installation of special...
7406712 Communication apparatus, communication method, and recording medium used therewith  
Encoded data that is obtained by embedding subdata in advertisement information and embedding the subdata-embedded advertisement information in main data is provided to a user. At the user side,...
7406714 Computer code intrusion detection system based on acceptable retrievals  
Methods, apparati, and computer-readable media for protecting computer code ( 1 ) from malicious retrievers ( 3 ). A method embodiment of the present invention comprises the steps of generating (...
7406524 Secret session supporting load balancer  
A method of load balancing messages to servers of a server farm, by a load balancer. The method includes configuring the load balancer with information on the session ID values which may be...
7404210 Method and apparatus for defending against distributed denial of service attacks on TCP servers by TCP stateless hogs  
A Distributed Denial-of-Service (DDoS) attack by a TCP stateless hog is defeated with use of an enhancement to the keep-alive mechanism provided by RFC 1122. A TCP server receives a new TCP...
7404211 Systems and methods for protecting a server computer  
A server computer protection apparatus protects a server computer against DoS attacks, but allows access to the server. The server computer protection apparatus comprises a unit configured to...
7404209 Method of, and system for, scanning electronic documents which contain links to external objects  
A content scanner for electronic documents such as email scans objects which are the target of hyperlinks within the document. If they are determined to be acceptable, a copy of the object is...
7404205 System for controlling client-server connection requests  
A method for controlling connections from an IP entity to a server. Initially, a limit count, representing a number of concurrently allowable connections between the IP entity and the server, is...
7401361 System and method for reducing virus scan time  
A system and method that marks whenever a sector on a hard drive is altered. A protected archive bit is maintained for each sector on the hard drive in a secured fashion. Authenticated requests are...
7401360 Methods and systems for identifying and mitigating telecommunications network security threats  
Methods and systems for identifying and mitigating telecommunications management message security threats are disclosed. A distributed security screening platform receives management messages from...
7401359 Generating malware definition data for mobile computing devices  
Malware definition data for mobile computing devices 2 is generated from master malware definition data 44 by selecting those classes of malware threat to which the mobile computing device is...
7401353 Detecting and blocking malicious connections  
In a device having data communication capability, a security method dynamically detecting a control connection, which originates from the device, and detecting a negotiation of a related connection...
7401362 Deploying and receiving software over a network susceptible to malicious communication  
Systems and/or methods that edit an image having an operating system to alter a security setting and securely deploy the edited image to a bare computer over a network susceptible to malicious...
7398553 Scripting virus scan engine  
Detecting and identifying an interpreted language virus, such as a scripting virus, and reasonably identifiable polymorphs of the virus source code. Scripting virus source is extracted and...
7398389 Kernel-based network security infrastructure  
A system and method for network security using a kernel based network security infrastructure is disclosed. The method comprises the installation of a computer code set into the operating system...
7398554 Secure lock mechanism based on a lock word  
One or more lock words in a non-volatile memory with write ability correspond to lockable features of a protected system including the memory. A lockable feature should be locked when the...