×

METHOD FOR EVOLVING DETECTORS TO DETECT MALIGN BEHAVIOR IN AN ARTIFICIAL IMMUNE SYSTEM

  • US 20120072987A1
  • Filed: 11/22/2011
  • Published: 03/22/2012
  • Est. Priority Date: 09/23/2005
  • Status: Active Grant
First Claim
Patent Images

1. A network device for detecting an unauthorized activity by another network device, comprising:

  • a transceiver that is configured to communicate over a network;

    a memory that is configured to store instructions; and

    a processor that is configured to execute instructions that enable actions, including;

    generating a plurality of detectors, wherein each detector includes a plurality of system calls;

    determining an initial matching value and an expectation value for each detector;

    comparing each detector to logged fragments of system calls that are associated with a computing process, and employing at least in part the comparison to determine a new matching value for each detector; and

    if the new matching value for at least one detector is equal to or greater than the at least one detector'"'"'s expectation value, evolving a child detector from the at least one parent detector.

View all claims
  • 3 Assignments
Timeline View
Assignment View
    ×
    ×