NetScout Systems. has filed a patent for a computer system and process to mitigate DDoS attacks by analyzing inbound and outbound packet information. The method involves accessing data repositories, calculating packet counts, and performing mitigation based on predetermined threshold and ratio values. GlobalData’s report on NetScout Systems gives a 360-degree view of the company including its patenting strategy. Buy the report here.

According to GlobalData’s company profile on NetScout Systems, Cloud computing disaster recovery was a key innovation area identified from patents. NetScout Systems's grant share as of January 2024 was 75%. Grant share is based on the ratio of number of grants to total number of patents.

Mitigating ddos attacks by analyzing inbound and outbound packets

Source: United States Patent and Trademark Office (USPTO). Credit: NetScout Systems Inc

A computer-implemented method and system have been patented for mitigating Distributed Denial of Service (DDoS) attacks on protected computer networks. The method involves analyzing inbound and outbound packet information by accessing a data repository storing details of captured packets, calculating packet counts and byte lengths, and determining if outbound traffic exceeds a predetermined ratio compared to inbound traffic for specific destination ports. If the ratio is exceeded, DDoS attack mitigation measures are implemented. The system includes databases, a processor, and instructions for accessing and analyzing packet data to identify potential DDoS attacks and take appropriate action.

The patented method and system offer a sophisticated approach to DDoS attack mitigation by monitoring inbound and outbound packet traffic to protected computer networks. By analyzing packet counts and byte lengths for specific destination ports, the system can detect anomalies indicative of a potential DDoS attack and trigger mitigation measures. The system's ability to create a data repository, store metadata, and access packet information for analysis demonstrates a comprehensive approach to network security. With the inclusion of User Datagram Protocol (UDP) and Transmission Control Protocol (TCP) packets in the analysis, the system can effectively identify and respond to various types of DDoS attacks, enhancing the overall security posture of the protected computer networks.

