BAE Systems Information and Electronic Systems Integration Inc.
发明人:
Boteler Aaron,Norton Marc
申请号:
US201012719621
公开号:
US9705899(B2)
申请日:
2010.03.08
申请国别(地区):
美国
年份:
2017
代理人:
Asmus Scott J.
摘要:
A digital filter correlation engine, wherein the correlation engine combines N arbitrary digital filter states based on the weights and along with a threshold generate a network incident. This network incident in turn can be feedback to another digital filter. This multi-layering capability allows the creation of higher level event detections that are time-based for a cyber security analyst to analyze, thereby reducing the amount of manual work the analyst has to do in inspecting behaviors within the network.