Invention Grant
- Patent Title: Intrusion detection system
-
Application No.: US16005747Application Date: 2018-06-12
-
Publication No.: US10686807B2Publication Date: 2020-06-16
- Inventor: Gideon Zenz , Volker Vogeley , Dirk Harz , Mark Usher , Astrid Granacher
- Applicant: INTERNATIONAL BUSINESS MACHINES CORPORATION
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agent Tihon Poltavets
- Main IPC: G06F21/00
- IPC: G06F21/00 ; H04L29/06 ; G06Q10/10 ; H04L12/58 ; G06F16/28

Abstract:
A method for classification of suspicious activities is provided. In the method, a first intrusion detection system comprising a normal operation mode and which is connected to a second intrusion detection system by a first communications connection is implemented. In response to detecting a malfunction of the first communications connection, the first intrusion detection system is switched from the normal operation mode to a limited operation mode for receiving first data from one or more honeypot systems and second data from the second intrusion detection system. A prediction model for representing malicious attacks is generated by execution of a predefined classification algorithm with respect to the received data, wherein the predefined classification algorithm further determine a model evaluation metric with respect to the prediction model. The prediction model is deployed to detect the malicious attacks if the model evaluation metric meets a predefined validation condition.
Public/Granted literature
- US20190379677A1 INTRUSION DETECTION SYSTEM Public/Granted day:2019-12-12
Information query