Processing Control Apparatus for Cybersecurity Risk Summation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing unauthorized access detection systems in communication networks face challenges in accurately detecting unauthorized access, leading to low cybersecurity reliability due to reliance on command string analysis alone.

Innovation Solution

A processing control apparatus and method that calculates a risk value for processing information over a certain period and restricts processing when the calculated value meets a predetermined condition, enhancing the detection and response to unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Measurement precision

If unauthorized access detection is based on command string analysis alone, then the detection system is simple to implement, but the detection accuracy is low

Engineering Contradiction:
Improveunauthorized access detection accuracyVSAvoiddetection system complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent combines multiple detection dimensions (command string analysis, access frequency monitoring, time pattern analysis, and source IP tracking) into a unified detection system. The determination unit integrates results from the command string analysis unit, access frequency analysis unit, and time pattern analysis unit to make comprehensive unauthorized access determinations, thereby improving detection accuracy while maintaining manageable system complexity through modular architecture.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent transitions from single-dimension command string analysis to multi-dimensional detection by adding temporal dimension (time patterns, access frequency) and spatial dimension (source IP addresses) to the detection process. This dimensional expansion enables the system to detect unauthorized access more accurately by analyzing patterns across multiple axes simultaneously.

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

2Reliability

If comprehensive processing information is monitored to improve detection accuracy, then cybersecurity reliability improves, but processing overhead increases

Engineering Contradiction:
Improvecybersecurity reliabilityVSAvoidprocessing throughput
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent applies partial monitoring by focusing detection resources on specific high-risk patterns rather than analyzing all processing information equally. The determination unit selectively triggers detailed analysis based on preliminary indicators from access frequency and time pattern analysis, examining only those access requests that exhibit suspicious characteristics. This approach maintains high cybersecurity reliability while reducing overall processing overhead by avoiding exhaustive analysis of normal traffic.

Inventive Principle:
Principle #16Partial or excessive action

Solution Approach 2:

The patent implements differential processing where different levels of analysis depth are applied to different access requests. Normal access patterns receive minimal processing, while accesses exhibiting suspicious temporal patterns, high frequency, or matching command strings undergo comprehensive multi-unit analysis. This localized quality adjustment ensures reliable detection of threats while preserving processing throughput for legitimate operations.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS11086986B2Processing control apparatus, processing control method, and non-transitory recoding medium
Publication Date: 2021.08.10 NEC CORP
  • US11086986B2 patent drawing
  • US11086986B2 patent drawing
  • US11086986B2 patent drawing

AI summary

Provided is a process control device, etc. capable of more reliably maintaining the soundness of an information processing system with regard to cybersecurity. A processing control device calculates a sum of a value indicating a risk included in processing information that includes one or more processing executed on an information processing apparatus during a certain period; and restricts processing to the information processing apparatus when the calculated sum value for the processing information satisfies a predetermined restriction condition.