AUTHENTICATOR MANAGEMENT DEVICE, COMPUTER READABLE MEDIUM AND AUTHENTICATOR MANAGEMENT METHOD

    公开(公告)号:US20220300597A1

    公开(公告)日:2022-09-22

    申请号:US17831991

    申请日:2022-06-03

    摘要: An attack detection device (501) includes a group generation unit (30), a log management unit (40), an authenticator generation unit (90) and a graph management unit (60). The group generation unit (30) generates an authenticator graph (D36) including a plurality of pieces of correspondence information wherein a plurality of logs and an identifier to identify an authenticator generated by using the plurality of logs are associated. The log management unit (40) manages the plurality of logs used for generation of an authenticator identified by the identifier in the authenticator graph (D36). The authenticator generation unit (90) generates the authenticator identified by the identifier for each identifier in the authenticator graph (D36) from the plurality of logs. The graph management unit (60) manages the authenticator graph (D36) and the authenticator generated.

    SECURITY MONITORING DEVICE, COMMUNICATION SYSTEM, SECURITY MONITORING METHOD, AND COMPUTER READABLE MEDIUM

    公开(公告)号:US20190149569A1

    公开(公告)日:2019-05-16

    申请号:US16302963

    申请日:2016-06-15

    IPC分类号: H04L29/06 G06F21/62

    摘要: An electronic file copy notification reception unit acquires identification information on a terminal device connected to a first network switch to which a file server is connected, as first identification information, when the terminal device acquires a copy of an electronic file from the file server. A determination instruction unit acquires identification information on a device, as second identification information, when the device is newly connected to a second network switch different from the first network switch. The determination instruction unit matches the first identification information with the second identification information and instructs the second network switch to restrict communication to and from the terminal device via the second network switch in case where the first identification information coincides with the second identification information.

    FALSE SUBMISSION FILTER DEVICE, FALSE SUBMISSION FILTER SYSTEM, FALSE SUBMISSION FILTER METHOD, AND COMPUTER READABLE MEDIUM

    公开(公告)号:US20210365431A1

    公开(公告)日:2021-11-25

    申请号:US16603138

    申请日:2017-05-25

    IPC分类号: G06F16/23 G06F16/9537

    摘要: In an SNS server (103) corresponding to a false submission filter device, an event specifying unit (604) analyzes contents of a submission informing of an occurrence of an event and specifies a location (721) of occurrence of the event. A query destination specifying unit (605) searches a query destination database (613) and specifies a query destination corresponding to the location (721) specified by the event specifying unit (604). A query unit (606) transmits a request for checking the presence or absence of occurrence of the event from the observation result of one or more machines to the query destination specified by the query destination specifying unit (605). The query unit (606) receives a response to the request. A result reflecting unit (607) determines whether the contents of the submission are true or false from a check result indicated by the response received by the query unit (606). The result reflecting unit (607) performs a process in accordance with a determination result on the submission.

    EXECUTION MONITORING DEVICE AND EXECUTION MONITORING METHOD

    公开(公告)号:US20210354710A1

    公开(公告)日:2021-11-18

    申请号:US17387353

    申请日:2021-07-28

    IPC分类号: B60W50/06 B60W50/04 G07C5/12

    摘要: A execution monitoring device (20) includes a time-series data storage unit (225) to store time-series data and a real-time specification determining unit (204). The real-time specification determining unit (204) updates a determination result, which is a result of determining whether the time-series data stored in the time-series data storage unit (225) satisfies a real-time specification, which is part of constraints included in a monitoring specification for electronic device runtime monitoring, is stored in a memory area reserved before execution of the real-time specification determining unit (204), and is a constraint using a real time.