Patents by Inventor Partha Bhattacharya

Partha Bhattacharya has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 6985920
    Abstract: An intra-session network correlation system receives a stream of network events and then group them into different network session according to each event's event parameters and the corresponding network address translation (NAT) information. An event in the stream is first matched against any existing session, and then categorized using the information about a NAT device that translates a message the event is related to. Finally, at a predefined time, a categorized event is processed to identify other categorized events in accordance with a NAT message or an expiry timer associated with the categorized event, and the categorized event and identified other categorized events are grouped into the same network session.
    Type: Grant
    Filed: June 23, 2003
    Date of Patent: January 10, 2006
    Assignee: Protego Networks Inc.
    Inventors: Partha Bhattacharya, Yu Liao
  • Publication number: 20050060562
    Abstract: A network security monitor system groups a plurality of security events into network sessions, correlates the network sessions according to a set of predefined network security event correlation rules and generates a security incident for the network sessions that satisfy one of the network security event correlation rules. The system then presents the information of the network sessions and security incidents to a user of the system in an intuitive form. The user is able to not only learn the details of a possible network attack, but also creates new security event correlation rules intuitively, including drop rules for dropping a particular type of events.
    Type: Application
    Filed: September 12, 2003
    Publication date: March 17, 2005
    Inventors: Partha Bhattacharya, Imin Lee, Aji Joseph, Eli Stevens, Diwakar Naramreddy
  • Publication number: 20040260763
    Abstract: An intra-session network correlation system receives a stream of network events and then group them into different network session according to each event's event parameters and the corresponding network address translation (NAT) information. An event in the stream is first matched against any existing session, and then categorized using the information about a NAT device that translates a message the event is related to. Finally, at a predefined time, a categorized event is processed to identify other categorized events in accordance with a NAT message or an expiry timer associated with the categorized event, and the categorized event and identified other categorized events are grouped into the same network session.
    Type: Application
    Filed: June 23, 2003
    Publication date: December 23, 2004
    Inventors: Partha Bhattacharya, Yu Liao
  • Publication number: 20040133672
    Abstract: A security monitoring system processes event messages related to computer network security in real time, evaluating inter-event constraints so as to identify combinations of events that are partial solutions to a predefined event correlation rule, and furthermore evaluating combinations of the partial solutions do determine if they together satisfy the predefined event correlation rule. A decision tree is formed based on the rule. Event messages are categorized into groups at leaf nodes of the tree in accordance with a plurality of intra-event constraints, and then the messages are correlated in accordance with a plurality of inter-event constraints at non-leaf nodes of the tree. When the inter-event constraint at a root node of the tree has been satisfied, a network attack alert is issued and protective actions may be taken.
    Type: Application
    Filed: May 21, 2003
    Publication date: July 8, 2004
    Inventors: Partha Bhattacharya, Jan Christian Lawrence