×

NETWORK SECURITY SYSTEM HAVING A DEVICE PROFILER COMMUNICATIVELY COUPLED TO A TRAFFIC MONITOR

  • US 20090320138A1
  • Filed: 09/01/2009
  • Published: 12/24/2009
  • Est. Priority Date: 08/25/2000
  • Status: Active Grant
First Claim
Patent Images

1. A method for providing security to a plurality of hosts on a network, the method comprising:

  • receiving determined characteristics of the host;

    accessing vulnerabilities of the hosts stored in a vulnerability tree having nodes representative of characteristics of the host and a set of potential vulnerabilities associated with ones of the nodes;

    determining one or more vulnerabilities of the host corresponding to the determined characteristics of the host in the vulnerability tree;

    associating the determined vulnerabilities of the host with one or more attack signatures; and

    providing the determined vulnerabilities of the host and their corresponding attack signatures to a traffic monitor, the traffic monitor configured to monitor the network for traffic indicative of attacks exploiting one or more of the determined vulnerabilities of the host.

View all claims
  • 7 Assignments
Timeline View
Assignment View
    ×
    ×