Patents by Inventor Sung Ryoul Lee

Sung Ryoul Lee has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20220197923
    Abstract: Disclosed herein are an apparatus and method for constructing big data on unstructured cyber threat information. The method may include collecting unstructured cyber threat information, structuring the collected unstructured cyber threat information based on a previously trained AI model, and constructing big data from the structured cyber threat information.
    Type: Application
    Filed: December 21, 2021
    Publication date: June 23, 2022
    Inventors: Gae-Ock JEONG, Woo-Young GO, Seung-Jin RYU, Sung-Ryoul LEE, Han-Jun YOON, Woo-Ho LEE
  • Patent number: 9444828
    Abstract: A network intrusion detection apparatus and method that perform Perl Compatible Regular Expressions (PCRE)-based pattern matching on the payloads of packets using a network processor equipped with a Deterministic Finite Automata (DFA) engine. The network intrusion detection apparatus includes a network processor core for receiving packets from a network, and transmitting payloads of the received packets to a Deterministic Finite Automata (DFA) engine. A detection rule converter converts a PCRE-based detection rule, preset to detect an attack packet, into a detection rule including a pattern to which only PCRE grammar corresponding to the DFA engine is applied. The DFA engine performs PCRE pattern matching on the payloads of the packets based on the detection rule converted by the detection rule converter.
    Type: Grant
    Filed: September 11, 2013
    Date of Patent: September 13, 2016
    Assignee: ELECTRONICS AND TELECOMMUNICATIONS RESERACH INSTITUTE
    Inventors: Sung-Ryoul Lee, Young-Han Choi, Jung-Hee Lee, Byung-Chul Bae, Hyung-Geun Oh, Ki-Wook Sohn
  • Patent number: 8732833
    Abstract: A system and method for detecting network intrusion by using a network processor are provided. The intrusion detection system includes: a first intrusion detector, configured to use a first network processor to perform intrusion detection on layer 3 and layer 4 of a protocol field among information included in a packet header of a packet transmitted to the intrusion detection system, and when no intrusion is detected, classify the packets according to stream and transmit the classified packets to a second intrusion detector; and a second intrusion detector, configured to use a second network processor to perform intrusion detection through deep packet inspection (DPI) for the packet payload of the packets transmitted from the first intrusion detector. Thereby, intrusion detection for high-speed packets can be performed in a network environment.
    Type: Grant
    Filed: April 22, 2012
    Date of Patent: May 20, 2014
    Assignee: Electronics and Telecommunications Research Institute
    Inventors: Young-Han Choi, Deok-Jin Kim, Sung-Ryoul Lee, Man-Hee Lee, Byung-Chul Bae, Sang-Woo Park, E-Joong Yoon
  • Publication number: 20140123288
    Abstract: A network intrusion detection apparatus and method that perform Perl Compatible Regular Expressions (PCRE)-based pattern matching on the payloads of packets using a network processor equipped with a Deterministic Finite Automata (DFA) engine. The network intrusion detection apparatus includes a network processor core for receiving packets from a network, and transmitting payloads of the received packets to a Deterministic Finite Automata (DFA) engine. A detection rule converter converts a PCRE-based detection rule, preset to detect an attack packet, into a detection rule including a pattern to which only PCRE grammar corresponding to the DFA engine is applied. The DFA engine performs PCRE pattern matching on the payloads of the packets based on the detection rule converted by the detection rule converter.
    Type: Application
    Filed: September 11, 2013
    Publication date: May 1, 2014
    Applicant: ELECTRONICS AND TELECOMMUNICATIONS RESEARCH INSTITUTE
    Inventors: Sung-Ryoul LEE, Young-Han CHOI, Jung-Hee LEE, Byung-Chul BAE, Hyung-Geun OH, Ki-Wook SOHN
  • Patent number: 8631331
    Abstract: The present invention relates to a network management system for analyzing Internet application traffic. An apparatus for Internet application traffic classification benchmark according to the present invention configures two or more Internet application traffic classifications in plug-in scheme to perform a benchmarking function for the performance of each Internet application traffic classification. The apparatus can provide an objective and accurate evaluation for each classification technology by aggregating various Internet application traffic classification technologies by the plug-in scheme.
    Type: Grant
    Filed: September 30, 2010
    Date of Patent: January 14, 2014
    Assignee: SNU R&DB Foundation
    Inventors: Su Chul Lee, Sung Ryoul Lee, Hyun Chul Kim, Chong Kwon Kim
  • Publication number: 20130160122
    Abstract: A system and method for detecting network intrusion by using a network processor are provided. The intrusion detection system includes: a first intrusion detector, configured to use a first network processor to perform intrusion detection on layer 3 and layer 4 of a protocol field among information included in a packet header of a packet transmitted to the intrusion detection system, and when no intrusion is detected, classify the packets according to stream and transmit the classified packets to a second intrusion detector; and a second intrusion detector, configured to use a second network processor to perform intrusion detection through deep packet inspection (DPI) for the packet payload of the packets transmitted from the first intrusion detector. Thereby, intrusion detection for high-speed packets can be performed in a network environment.
    Type: Application
    Filed: April 22, 2012
    Publication date: June 20, 2013
    Applicant: ELECTRONICS AND TELECOMMUNICATIONS RESEARCH INSTITUTE
    Inventors: Young-Han CHOI, Deok-Jin KIM, Sung-Ryoul LEE, Man-Hee LEE, Byung-Chul BAE, Sang-Woo PARK, E-Joong YOON
  • Publication number: 20110093785
    Abstract: The present invention relates to a network management system for analyzing Internet application traffic. An apparatus for Internet application traffic classification benchmark according to the present invention configures two or more Internet application traffic classifications in plug-in scheme to perform a benchmarking function for the performance of each Internet application traffic classification. The apparatus can provide an objective and accurate evaluation for each classification technology by aggregating various Internet application traffic classification technologies by the plug-in scheme.
    Type: Application
    Filed: September 30, 2010
    Publication date: April 21, 2011
    Applicant: SNU R&DB FOUNDATION
    Inventors: Su Chul LEE, Sung Ryoul Lee, Hyun Chul Kim, Chong Kwon Kim