The present invention provides a
system and method for predicting and preventing unauthorized intrusion in a
computer configuration. Preferably, the invention comprises a communication network to which at least two computing devices connect, wherein at least one of the computing devices is operable to receive data transmitted by the other computing device. The invention further comprises a
database that is accessible over the network and operable to store information related to the network. A
vulnerability assessment component is provided that is operable to execute a command over the communication network, and a
data monitoring utility operates to monitor data transmitted over the communication network as the
vulnerability assessment component executes commands. Also, an intrusion detection component is included that is operable to provide a simulated copy of the network, to generate a first
data transmission on the simulated copy of the network that represents a second
data transmission on the communication network, and to compare the first
data transmission with a second data transmission. The
vulnerability assessment component preferably interfaces with the intrusion detection component to define rules associated with the first and second data transmissions, to store the rules in the
database, and to retrieve the rules from the
database in order to predict and prevent unauthorized intrusion in the
computer configuration.