Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

7 results about "Network tap" patented technology

A Network TAP (Terminal Access Point) denotes a system that monitors events on a local network in order to aid administrators (or attackers) in analyzing the network. The tap itself is typically a dedicated hardware device, which provides a way to access the data flowing across a computer network. In many cases, it is desirable for a third party to monitor the traffic between two points in the network. If the network between points A and B consists of a physical cable, a "network tap" may be the best way to accomplish this monitoring. The network tap has (at least) three ports: an A port, a B port, and a monitor port. A tap inserted between A and B passes all traffic (send and receive data streams) through unimpeded in real time, but also copies that same data to its monitor port, enabling a third party to listen. Network taps are commonly used for network intrusion detection systems, VoIP recording, network probes, RMON probes, packet sniffers, and other monitoring and collection devices and software that require access to a network segment. Taps are used in security applications because they are non-obtrusive, are not detectable on the network (having no physical or logical address), can deal with full-duplex and non-shared networks, and will usually pass through or bypass traffic even if the tap stops working or loses power.

Malicious behavior bypass interception system based on flow analysis and detection

PendingCN121418179ABiological modelsAlarmsSQL injectionAttack
The invention belongs to the technical field of network security protection, and discloses a malicious behavior bypass interception system based on flow analysis and detection, a rule engine quickly matches known attacks based on a dynamic feature library, such as SQL injection, common port scanning, federated learning model combined multi-node cooperative training, and flow time, behavior and content features are combined to realize the flow analysis and detection of malicious behaviors. Unknown threats such as 0day vulnerability variants and low-frequency hidden attacks are accurately captured; in an enterprise mixed service traffic environment, missed judgment of traditional static detection on unknown attacks can be avoided, false alarms caused by data limitation of a single model can be reduced, energy consumption of operation and maintenance personnel for processing invalid alarms is reduced, core assets are prevented from being damaged by novel attacks, and comprehensiveness and reliability of network protection are remarkably improved; a bypass deployment mode is adopted, traffic is obtained through network TAP equipment or traffic mirror images, a service main forwarding link does not need to be intervened, and network delay and single-point failure risks introduced by traditional series deployment are avoided.
Owner:BEIJING LANGU TECHNOLOGY CO LTD

Cloaked network exfiltration detection

A network data surveillance system that detects exfiltration of data records, files and fields: a. using and storing valuable record, file and field data from the network that is earmarked as an indicator of exfiltration activity and; b. where the surveillance is achieved with the use of a network tap or similar on cloud that allows the surveillance to be achieved without having a physical presence on the network and therefore without detection by attackers and; c. Where a surveillance computer system is attached to the network tap in order to analyse network and file transfer traffic and compare activity to a subset database of valuable earmarked records, files and or fields and where the surveillance computer remains cloaked from the network and; d. Where the system alerts network owners or operators of exfiltration and or intrusion activity using out of network communications.
Owner:DEADBOLT CYBER HOLDINGS INC

Computer network demultiplexer convenient to adjust

The utility model discloses a computer network demultiplexer convenient to adjust, which belongs to the technical field of network demultiplexers, and comprises a demultiplexer, a plurality of network cable interfaces and network cables, a plurality of fixed frames are uniformly arranged at one end of the demultiplexer, a support rod is fixed in the middle of the bottom of each fixed frame, a movable pipe is movably connected onto the support rod, and the movable pipe is connected with the network cable interfaces. A first connecting column is arranged on the top of the moving pipe, a fixing block is arranged on the top of the first connecting column, two clamping plates are symmetrically installed on the top of the fixing block, a second connecting column is fixedly connected to one end of the top of the supporting rod, and a first cable clamping block is fixed to the top of the second connecting column. A second cable clamping block is connected to the top of the first cable clamping block through a connecting piece, a label plate is arranged on the top of the second cable clamping block, and a dust cover is arranged on one side of the fixing frame. According to the utility model, through cooperative use of the dustproof cover, the cable clamping block I and other components, the network cable interface can be conveniently shielded, dust accumulation is avoided, and meanwhile, classification and fixation of network cables are also facilitated.
Owner:SUZHOU VOCATIONAL UNIVERSITY (SUZHOU OPEN UNIVERSITY)

Computer network tapping device convenient to overhaul, disassemble and assemble

The invention discloses a computer network tapping device convenient to overhaul, disassemble and assemble, and belongs to the technical field of network tapping devices.The computer network tapping device comprises a tapping device body, the tapping device body comprises a tapping port and a tapping box, a sliding cover is slidably connected to the top of the tapping box in an inserted mode, and a sealing pressing plate frame capable of being adjusted and moved up and down is installed at the top of the sliding cover; the right side of the sealing pressing plate frame is integrally and fixedly connected with an extension plate frame, the two positioning columns are inserted into the top of the front side and the top of the rear side of the tapping box correspondingly, and cushion blocks are fixedly connected to the four corners of the bottom of the tapping box correspondingly. According to the technical scheme of the utility model, the quick disassembly and assembly of the tapping box are facilitated, the maintenance is facilitated, the sealing performance can be ensured, the dustproof and waterproof effects are enhanced, the loosening and falling of the slip cover during installation can be prevented, and the use efficiency and the protection effect are effectively improved.
Owner:XIAMEN CHANGLUO TECHNOLOGY CO LTD

Monitoring a secure network using a network tap device

ActiveCN117203936BSecuring communicationNetwork tapNetwork packet
A network tap device is configured to join a secure network to be monitored through a joining process. The joining process includes communicating with an access point to obtain a security key for the network to be monitored and communicating with the access point to obtain a network address for the network tap device. After joining the secure network, the network tap device collects network data on the secure network. Collecting the network data includes detecting network traffic on the network to be monitored, the network traffic containing encrypted data and unencrypted data, decrypting the encrypted data in the network traffic using the security key to generate decrypted data, and adding the decrypted data and the unencrypted data to the network data. The network tap device also transmits the collected network data to a monitoring workstation via a data transmission network.
Owner:LANDIS GYR TECH INC

Cloaked network exfiltration detection

A network data surveillance system that detects exfiltration of data records, files and fields: a. using and storing valuable record, file and field data from the network that is earmarked as an indicator of exfiltration activity and; b. where the surveillance is achieved with the use of a network tap or similar on cloud that allows the surveillance to be achieved without having a physical presence on the network and therefore without detection by attackers and; c. Where a surveillance computer system is attached to the network tap in order to analyse network and file transfer traffic and compare activity to a subset database of valuable earmarked records, files and or fields and where the surveillance computer remains cloaked from the network and; d. Where the system alerts network owners or operators of exfiltration and or intrusion activity using out of network communications.
Owner:DEADBOLT CYBER HOLDINGS INC