APT multi-dimensional detection and defense system and method

A dimension and technology to be detected, applied in the field of network security, can solve problems such as inability to conduct comprehensive detection, and achieve the effect of defensive detection

Active Publication Date: 2014-07-02
BEIJING ANTIY NETWORK SAFETY TECH CO LTD
View PDF6 Cites 16 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0007] The invention provides a system and method for multi-dimensional detection and defense against APT, which solves the problem that the traditional security defense system can only detect a single dimension at a single time point or time period, and cannot perform comprehensive detection, so that the defense detection system can realize Self-updating to gain detection capabilities in other dimensions

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • APT multi-dimensional detection and defense system and method
  • APT multi-dimensional detection and defense system and method
  • APT multi-dimensional detection and defense system and method

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0045] In order to enable those skilled in the art to better understand the technical solutions in the embodiments of the present invention, and to make the above-mentioned purposes, features and advantages of the present invention more obvious and easy to understand, the technical solutions in the present invention will be further detailed below in conjunction with the accompanying drawings illustrate.

[0046] The present invention provides a system and method for multi-dimensional detection and defense of APT, which solves the problem that the traditional security defense system can only detect a single dimension at a single time point or time period, and cannot perform comprehensive detection. The defense detection system can realize Self-updating to gain detection capabilities in other dimensions.

[0047] A system for multi-dimensional detection and defense against APT, such as figure 1 As shown, it includes: at least two detection modules 101, and a dimension expansion...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides an APT multi-dimensional detection and defense system and method. The system comprises two or more detection modules and a dimension expansion module, wherein the detection modules are allocated to all dimensions and used for detecting objects to be detected in the current dimensions, recording behaviors of the objects to be detected and detection results, screening out dimension detection expansion information according to preset screening rules and transmitting the dimension detection expansion information to the dimension expansion module; the dimension expansion module acquires dimension detection expansion information transmitted by the detection modules, performs projection association on the dimension detection expansion information according to preset dimension association rules to generate detection rules and screening rules available to other dimensions, and transmits detection rules and screening rules to the detection modules in corresponding dimensions. The invention further provides the corresponding detection and defense method. By means of the APT multi-dimensional detection and defense system and method, the detection and defense system can be updated automatically to obtain detectability of other dimensions.

Description

technical field [0001] The invention relates to the field of network security, in particular to a system and method for multi-dimensional detection and defense against APT. Background technique [0002] APT attack is a kind of high-level network attack. Specifically, it is a continuous attack behavior carried out by unauthorized individuals and groups using various attack methods and advanced attack methods on the victim target for a long time. The common purpose of APT attack is to destroy the victim target. system, stealing victim information, classic APT incidents include Stuxnet, Duqu, Flame, etc. [0003] According to the analysis of typical APT events, the attackers often have rich economic, technical, intelligence and other resources, and can effectively break through the defense of the security system. After analyzing the recent typical events, an APT event starts from attacking and enters the victim system. The span of discovery by the victim often ranges from seve...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
Inventor 方华关墨辰
Owner BEIJING ANTIY NETWORK SAFETY TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products