Patents Assigned to Haystack Labs, Inc.
  • Patent number: 5557742
    Abstract: A processing system intrusion and misuse detection system and method utilizes instructions for and steps of processing system inputs into events and processing the events with reference to a set of selectable misuses in a misuse engine to produce one or more misuse outputs. The system and method convert processing system generated inputs to events by establishing an event data structure that stores the event. The event data structure includes authentication information, subject information, and object information. Processing system audit trail records, system log file data, and system security state data are extracted from the processing system to form the event data structure. A signature data structure stores signatures that the misuse engine compares and matches to selectable misuses.
    Type: Grant
    Filed: March 7, 1994
    Date of Patent: September 17, 1996
    Assignee: Haystack Labs, Inc.
    Inventors: Stephen E. Smaha, Steven R. Snapp