18473355. LOG DETERMINATION DEVICE, LOG DETERMINATION METHOD, LOG DETERMINATION PROGRAM, AND LOG DETERMINATION SYSTEM simplified abstract (DENSO CORPORATION)

From WikiPatents
Jump to navigation Jump to search

LOG DETERMINATION DEVICE, LOG DETERMINATION METHOD, LOG DETERMINATION PROGRAM, AND LOG DETERMINATION SYSTEM

Organization Name

DENSO CORPORATION

Inventor(s)

Keita Hayakawa of Kariya-city (JP)

Tomonori Ikuse of Kariya-city (JP)

LOG DETERMINATION DEVICE, LOG DETERMINATION METHOD, LOG DETERMINATION PROGRAM, AND LOG DETERMINATION SYSTEM - A simplified explanation of the abstract

This abstract first appeared for US patent application 18473355 titled 'LOG DETERMINATION DEVICE, LOG DETERMINATION METHOD, LOG DETERMINATION PROGRAM, AND LOG DETERMINATION SYSTEM

Simplified Explanation

The patent application describes a log determination device that can identify false positive security logs generated by abnormal activities in an electronic control system.

  • Log acquisition unit acquires security logs triggered by system abnormalities.
  • False positive log determination unit analyzes log generation frequency to identify false positives.
  • Output determination result based on analysis of security logs.
  • False positive log is generated by non-attack related abnormalities in the system.

Potential Applications

This technology can be applied in:

  • Cybersecurity systems
  • Intrusion detection systems
  • Network monitoring tools

Problems Solved

  • Reduction of false positive security alerts
  • Efficient identification of genuine security threats
  • Improved system reliability and performance

Benefits

  • Enhanced security incident response
  • Minimized risk of overlooking genuine threats
  • Optimal resource allocation for security monitoring

Potential Commercial Applications

Optimized for commercial use in:

  • IT security companies
  • Data centers
  • Financial institutions

Possible Prior Art

One possible prior art could be traditional log analysis tools that may not specifically focus on identifying false positive security logs.

Unanswered Questions

How does the device differentiate between different types of abnormal activities triggering security logs?

The patent application does not provide details on the specific criteria used to distinguish between various abnormal activities.

What is the accuracy rate of the false positive log determination unit in real-world scenarios?

The application does not mention any data or statistics regarding the accuracy of the determination unit in practical settings.


Original Abstract Submitted

A log determination device comprises a log acquisition unit that is configured to acquire a security log generated upon detecting an abnormality in an electronic control system, and a false positive log determination unit that is configured to determine, based on a frequency of generation of the security log, whether or not the detected security log is a false positive log, and to output a determination result, wherein the false positive log is the security log generated by detecting the abnormality caused not by the electronic control system being attacked.