×

Network Security System Having a Device Profiler Communicatively Coupled to a Traffic Monitor

  • US 20070143852A1
  • Filed: 02/16/2007
  • Published: 06/21/2007
  • Est. Priority Date: 08/25/2000
  • Status: Active Grant
First Claim
Patent Images

1. A method for providing security to a plurality of hosts on a network, the method comprising:

  • storing potential vulnerabilities of the hosts in a tree-structured vulnerability tree having nodes representative of characteristics of the host and a set of potential vulnerabilities associated with ones of the nodes;

    evaluating responses of a host of the plurality of hosts to data packets sent over the network to determine characteristics of the host;

    traversing the tree-structured vulnerability tree responsive to the determined characteristics to determine vulnerabilities of the host; and

    providing the determined vulnerabilities of the host to a traffic monitor, the traffic monitor configured to monitor the network for traffic indicative of attacks exploiting one or more of the determined vulnerabilities of the host.

View all claims
  • 9 Assignments
Timeline View
Assignment View
    ×
    ×