{"schema_version":"1.0","canonical_url":"https://patentable.app/patents/US-9832213","patent":{"patent_number":"US-9832213","title":"System and method for network intrusion detection of covert channels based on off-line network traffic","assignee":null,"inventors":[],"filing_date":"2015-09-10T00:00:00.000Z","publication_date":"2017-11-28T00:00:00.000Z","cpc_codes":["H04L","G06F","H04L","H04L"],"num_claims":18,"abstract":"A network intrusion detection system and method is configured to receive off-line network traffic. The off-line network traffic with a predefined format, PCAP file, is capable of indicating existence of a plurality of covert channels associated with a corresponding plurality of covert channel signatures. Each covert channel comprises a tool that communicates messages by deviating from a standard protocol to avoid detection. A plurality of covert channel processors are configured to analyze off-line network traffic. The analysis determines whether the off-line network traffic deviates from the standard protocol based on one or more covert channel signatures. The covert channels are employed in at least one standard layer of the standard protocol stack and the off-line network data traffic comprises at least one standard protocol stack having multiple standard layers."},"analysis":{"summary":null,"layman_explanation":null,"technical_analysis":null,"business_analysis":null,"faqs":null,"topics":[],"tech_cluster":null},"seo":{"title":"System and method for network intrusion detection of covert channels based on off-line network traffic","description":"A network intrusion detection system and method is configured to receive off-line network traffic. The off-line network traffic with a predefined format, PCAP file, is capable of indicating existence ","keywords":[]},"attribution":{"source":"Patentable","source_url":"https://patentable.app","canonical_url":"https://patentable.app/patents/US-9832213","license":"CC-BY-4.0-like","license_terms":"AI-generated analysis on this page (summary, layman_explanation, technical_analysis, business_analysis, faqs) may be reused with attribution and a visible link back to the canonical URL above. Patent abstracts, claims, and bibliographic data are USPTO public domain.","required_link":"https://patentable.app/patents/US-9832213","citation_suggestion":"Patentable. \"System and method for network intrusion detection of covert channels based on off-line network traffic\" (US-9832213). https://patentable.app/patents/US-9832213","copyright_holder":"Nomic Interactive Technology LLC"},"links":{"html":"https://patentable.app/patents/US-9832213","json":"https://patentable.app/api/llm-context/US-9832213","site":"https://patentable.app","llms_txt":"https://patentable.app/llms.txt"},"generated_at":"2026-06-06T19:50:45.786Z"}