MUMBAI, India, July 7 -- Intellectual Property India has published a patent application (202641077322 A) filed by Ruksar Fatima; and Syed Sadathullah on June 23, 2026, for An Explainable Artificial Intelligence Based Network Security Device And Method For Real-Time Detection, Attribution And Autonomous Mitigation Of Botnet-Driven Distributed Denial-Of-Service Attacks.
Inventors include Ruksar Fatima; and Syed Sadathullah.
The application for the patent was published on July 03, 2026, under issue no. 27/2026.
Abstract: The present invention discloses an Explainable Artificial Intelligence Based Network Security Device and Method for Real-Time Detection, Attribution and Autonomous Mitigation of Botnet-Driven Distributed Denial-of-Service (DDoS) Attacks. The invention comprises a network traffic acquisition module configured to capture and monitor network traffic, a feature intelligence module configured to extract and select significant traffic features, an optimization module configured to optimize attack detection parameters, and a hybrid detection module configured to identify malicious traffic patterns associated with botnet-driven DDoS attacks using an ensemble learning framework. The invention further comprises an explainability module configured to generate attack attribution information, SHAP (SHapley Additive Explanations) based feature contribution analysis, attack confidence information, and interpretable attack reasoning reports for improving transparency, trustworthiness, and explainability of attack detection decisions. The network security device additionally comprises an autonomous mitigation module configured to dynamically initiate defensive actions including malicious traffic filtering, source blocking, traffic isolation, adaptive firewall rule generation, route reconfiguration, and rate limiting upon detection of suspected attacks. An adaptive learning repository stores historical attack intelligence, attribution knowledge, mitigation outcomes, and network behavior patterns to facilitate continuous model improvement against evolving cyber threats. A hardware-assisted explainability controller cooperates with the detection, explainability, and mitigation modules to provide real-time attack attribution, mitigation prioritization, and autonomous response recommendations. The device is implemented on a hardware platform comprising a network interface unit, packet capture engine, embedded processor, artificial intelligence accelerator, memory unit, and storage unit. The invention provides enhanced attack detection accuracy, reduced false alarm rates, improved network resilience, real-time explainability, adaptive cyber defense capabilities, and autonomous mitigation of botnet-driven distributed denial-of-service attacks in enterprise, cloud, industrial, software-defined networking, and Internet-of-Things network environments.
Disclaimer: Curated by HT Syndication.