Invention Grant
- Patent Title: Apparatus and method for improving detection performance of intrusion detection system
- Patent Title (中): 提高入侵检测系统检测性能的装置和方法
-
Application No.: US14338917Application Date: 2014-07-23
-
Publication No.: US09275224B2Publication Date: 2016-03-01
- Inventor: NamHoon Lee , Seokwon Lee , Soonjwa Hong , TaekKyu Lee , KyuCheol Jung , Geunyong Kim , Hyung Geun Oh , Ki Wook Sohn
- Applicant: ELECTRONICS AND TELECOMMUNICATIONS RESEARCH INSTITUTE
- Applicant Address: KR Daejeon
- Assignee: ELECTRONICS AND TELECOMMUNICATIONS RESEARCH INSTITUTE
- Current Assignee: ELECTRONICS AND TELECOMMUNICATIONS RESEARCH INSTITUTE
- Current Assignee Address: KR Daejeon
- Agency: LRK Patent Law Firm
- Priority: KR10-2013-0124662 20131018
- Main IPC: G06F11/00
- IPC: G06F11/00 ; G06F21/55 ; H04L29/06 ; G06F12/14 ; G06F12/16

Abstract:
An apparatus for improving detection performance of an intrusion detection system includes a transformed detected data generation unit for changing original detected data, detected based on current detection rules, to transformed detected data complying with transformed detected data standard. A transformed detected data classification unit classifies the transformed detected data by attack type, classifies transformed detected data for attack types by current detection rule, and classifies transformed detected data for detection rules into true positives/false positives. A transformed keyword tree generation unit generates a true positive transformed keyword tree and a false positive transformed keyword tree. A true positive path identification unit generates a true positive node, and identifies a true positive path connecting a base node to the true positive node in the true positive transformed keyword tree. A true positive detection pattern generation unit generates a true positive detection pattern based on the true positive path.
Public/Granted literature
- US20150113646A1 APPARATUS AND METHOD FOR IMPROVING DETECTION PERFORMANCE OF INTRUSION DETECTION SYSTEM Public/Granted day:2015-04-23
Information query