×

Prioritizing bayes network alerts

  • US 20030093514A1
  • Filed: 09/13/2001
  • Published: 05/15/2003
  • Est. Priority Date: 09/13/2001
  • Status: Active Grant
First Claim
Patent Images

1. In a computer network having an information security device that generates alerts when attacks or anomalous incidents are detected, a method for prioritizing alerts comprising the steps of:

  • receiving alerts from the information security device;

    examining the received alerts for the presence of one or more relevant features;

    providing a summary or list of the features from at least a subset of the received alerts to a Bayes network for analysis; and

    assigning relevance scores to at least a subset of the received alerts, the relevance scores based at least in part on the analysis performed by the Bayes network.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×