Match Document Document Title
7565692 Floating intrusion detection platforms  
The present invention is a “floating” intrusion detection system that can use any computer on the network as an intrusion detection platform. A software agent program called a “socket” is...
7562214 Data processing systems  
Detection of an attack on a data processing system. An example method comprising, in the data processing system: providing an initial secret; binding the initial secret to data indicative of an...
7562388 Method and system for implementing security devices in a network  
Supporting the implementation and collaboration of a variety of security modules in a distributed computing network. A security interface provides a universal platform for coupling security modules...
7562391 Reducing false positive indications of buffer overflow attacks  
Certain events, such as data input operating system calls, are likely to initiate a buffer overflow attack. A timing module generates timestamps that indicate when such possible initiating events...
7562390 System and method for ARP anti-spoofing security  
A system and method that provides for copying ARP replies, and generating data packets which include the ARP reply, and other information such as an identification of the port on the ARP reply was...
7558796 Determining origins of queries for a database intrusion detection system  
A database intrusion detection system (DIDS) monitors database queries to detect anomalous queries that might by symptomatic of a code injection attack on the database. A proxy server intercepts...
7559086 System and method for detecting multi-component malware  
Malicious behavior of a computer program is detected using an emulation engine, an event detector and an event analyzer. The emulation engine includes a system emulator configured to emulate, in an...
7555777 Preventing attacks in a data processing system  
A method and apparatus for facilitating reduction in successful attacks on a monitored data processing system, such as a host computer. An intrusion detection system comprises a host or application...
7555778 Minimum-cost network hardening  
Disclosed is a network hardening mechanism. The mechanism: generates a dependency graph from a multitude of exploits; constructs a goal conditions expression which may then be used to determine...
7554444 System and method for alarm generation based on the detection of the presence of a person  
An automatic monitoring and sensing apparatus is provided for detecting an intruder or a person whose presence is undesired for one reason or another. According to one aspect of the invention, a...
7552478 Network unauthorized access preventing system and network unauthorized access preventing apparatus  
There is disclosed a network unauthorized access preventing system in which in a network to which one or more information processing apparatuses and a network unauthorized access preventing...
7551615 Method for packet encapsulation and redirection of data packets  
A method to redirect data packets by a network controller to a network node. A network interface routes a data packet from the network node. Another network interface redirects the data packet from...
7551073 Method, system and program product for alerting an information technology support organization of a security event  
A method, system and program product for alerting an information technology support organization of a security event is provided. The method includes storing in a trouble ticket alerting system...
7552196 Detecting corrupted data before transmission to a client  
A method of data transmission including receiving a request for data over an Internet, by a data provider; obtaining data, in response to the request, at the data provider; applying a quality...
7549162 Methods of providing security for data distributions in a data network and related devices, networks, and computer program products  
Methods of operating a data network including a first network device and a second network device may be provided. In particular, data for distribution from the first network device to the second...
7549166 Defense mechanism for server farm  
A method and system for handling a malicious intrusion to a machine in a networked group of computers. The malicious intrusion is an unauthorized access to the machine, such as a server in a server...
7549167 Self-cleansing system  
Disclosed is a self-cleansing system comprising at least two subsystems including an active subsystem and at least one available inactive subsystem. At least two of the subsystems may be connected...
7546468 Program update method and server  
A system including a secure LSI 1 establishes a communication path to/from a server 3 (UD 1 ), and receives a common key-encrypted program generated by encryption with a common key and...
7546471 Method and system for virus detection using pattern matching techniques  
A method and system for providing virus detection. A virus detection system provides for the use of pattern matching techniques on data at a binary level for virus detection. Whenever an incoming...
7546639 Protection of information in computing devices  
The present invention provides techniques for protecting information in a computing device. For instance, a location of the computing device is detected. It is determined whether the location is an...
7546637 Structures and methods for using geo-location in security detectors  
Information, e.g., a source address, in packets on a network is processed by a geo-location detector The geo-location detector generates a related location identifier, which, for example, is...
7543333 Enhanced computer intrusion detection methods and systems  
Improved intrusion detection and/or tracking methods and systems are provided for use across various computing devices and networks. Certain methods, for example, form a substantially unique audit...
7540029 Methods and systems for reducing the spread of files on a network  
Methods and systems can reduce the spread of computer files or data on a network by obtaining and tracking times of arrival for chunks of data transmitted on the network. The times of arrival for a...
7540028 Dynamic network security apparatus and methods or network processors  
Methods and apparatus for loading a security algorithm in a fast path of a network processor are disclosed. In an example method, a network processor generates a statistic associated with a...
7540030 Method and system for automatic cure against malware  
The present invention is intended as a method, system and computer program product for identification of malware components based on automatically collected statistical data and providing effective...
7536723 Automated method and system for monitoring local area computer networks for unauthorized wireless access  
According to an embodiment of the present invention, the wireless activity in a geographic area containing LAN connection ports is monitored using one or more sensor devices, called sniffers. By...
7536452 System and method for implementing traffic management based on network resources  
A method for implementing traffic management is provided that includes communicating a copy of one or more incoming packets and identifying a volume associated with the incoming packets in order to...
7533413 Method and system for processing events  
An event, such as a security-related event, is received from a first security engine or another source. A second security engine is identified that is configured to utilize information contained in...
7533415 Method and apparatus for controlling traffic in a computer network  
In one embodiment, a technique for controlling traffic in a computer network includes modifying a packet generated by a first computer. The packet may be intended for a second computer, but is...
7532895 Systems and methods for adaptive location tracking  
Wireless devices are adaptively tracked utilizing a system data store, a set of one or more wireless receivers, and a system processor. The system processor identifies a wireless device for...
7530106 System and method for security rating of computer processes  
A system, method, and computer program product for secure rating of processes in an executable file for malware presence comprising: (a) detecting an attempt to execute a file on a computer; (b)...
7529187 Detecting network evasion and misinformation  
Network evasion and misinformation detection are disclosed. Techniques are provided for network security, including determining whether a particular packet, segment, frame, or other data...
7529242 Routing network packets for multi-processor network flow analysis  
A system and method are disclosed for routing data packets for network flow analysis by a multi-processor system. A data packet comprising data sufficient to identify a network connection with...
7526807 Distributed architecture for statistical overload control against distributed denial of service attacks  
In a network including a centralized controller and a plurality of routers forming a security perimeter, a method for selectively discarding packets during a distributed denial-of-service (DDoS)...
7526804 Hardware assist for pattern matches  
An application contacts the Application Specific Integrated Circuit (ASIC) with a request for a job, along with the name or identifier of a data stream to pattern match against, the name or...
7526658 Scalable, distributed method and apparatus for transforming packets to enable secure communication between two stations  
Method and apparatus that enable secure transmission of data in a scalable private network are described. Each station that is to be part of a private network registers with a key table. A group...
7526808 Method and system for actively defending a wireless LAN against attacks  
A wireless network security system including a system data store capable of storing network default and configuration data, a wireless transmitter and a system processor. The system processor...
7526809 System and method for computer protection against malicious electronic mails by analyzing, profiling and trapping the same  
A system and method in accordance with a preferred embodiment of the invention advantageously provide trapping of suspected electronic mails in dedicated mail address accounts under predetermined...
7526806 Method and system for addressing intrusion attacks on a computer system  
According to one embodiment of the invention, a computerized method for addressing intrusion attacks directed at a computer includes receiving a data stream corresponding to a potential attack on...
7522908 Systems and methods for wireless network site survey  
This application is directed to systems and methods for surveying a wireless network site. A wireless network receiver or proxy is contacted. One or more client identifiers are received from the...
7523504 Methods, systems and computer program products for evaluating security of a network environment  
Methods, systems and computer program products are provided for evaluating security of a network environment. Security data associated with an asset in the network environment collected over a...
7523502 Distributed anti-malware  
A technique for protecting a computer system against malware involves distributing anti-malware data across multiple computing resources. When a local machine detects a malware instance, the local...
7523501 Adaptive computer worm filter and methods of use thereof  
A system identifies computer worms associated with published, or otherwise, known security holes. The system uses a worm pattern developed to identify those data packets most likely to be a...
7523499 Security attack detection and defense  
Detecting an attack on an authentication service. A first memory area is configured to store data relating to a plurality of requests communicated to an authentication service from a plurality of...
7523500 Filtered antivirus scanning  
An antivirus client module ( 114 ) includes a virus definitions module ( 312 ) holding information describing characteristics of files that can potentially be infected by viruses and information...
7523494 Determining blocking measures for processing communication traffic anomalies  
Communication traffic is processed by detecting an anomaly in the communication traffic. A first blocking measure A is applied to the anomalous traffic that stops the anomalous traffic. A second...
7523503 Method for protecting security of network intrusion detection sensors  
A method for providing security for a network intrusion detection system in a provisionable network, the method comprises evaluating the system security of the provisionable network and applying a...
7519860 System, device and method for automatic anomaly detection  
A method and system for monitoring the behavior of at least one observable object, e.g. a network element, of a network, wherein at least one parameter of the observable object is repeatedly...
7519998 Detection of malicious computer executables  
A method of detecting malicious binary executable files is accomplished by inputting a binary executable file; converting the binary executable file to byte hexadecimal text strings; calculating...
7519987 Method, system, and apparatus to allow for credential vault usage in templated portal applications  
One example creates an application specific credential vault manager for templated applications. This credential vault manager would be associated with the portlets requiring the use of the...