Intranet sensitive information disclosure evidence collection system and method based on honeynet technology

A sensitive information and honeynet technology, applied in transmission systems, special data processing applications, instruments, etc., can solve the problem of huge log data, unable to guarantee the accuracy and scientificity of forensic results, and unable to meet the actual needs of enterprise internal network security, etc. problem, to ensure the accuracy and validity, to avoid the effect of forensic lag

Active Publication Date: 2015-04-01
STATE GRID CORP OF CHINA +2
View PDF5 Cites 7 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] However, since the log data is recorded on different devices, the above method cannot completely record the behavior process of sensitive information leakage during the forensics process, and the log data is huge, which cannot guarantee the accuracy and scientificity of the forensics results; further, based on the log data Collecting evidence on sensitive information leakag

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Intranet sensitive information disclosure evidence collection system and method based on honeynet technology
  • Intranet sensitive information disclosure evidence collection system and method based on honeynet technology
  • Intranet sensitive information disclosure evidence collection system and method based on honeynet technology

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0029] The following will clearly and completely describe the technical solutions in the embodiments of the present invention with reference to the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only some, not all, embodiments of the present invention. The components of the embodiments of the invention generally described and illustrated in the figures herein may be arranged and designed in a variety of different configurations. Accordingly, the following detailed description of the embodiments of the invention provided in the accompanying drawings is not intended to limit the scope of the claimed invention, but merely represents selected embodiments of the invention. Based on the embodiments of the present invention, all other embodiments obtained by those skilled in the art without making creative efforts belong to the protection scope of the present invention.

[0030] In view of the various disadvantages of foren...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to the technical field of computer network safety, in particular to an intranet sensitive information disclosure evidence collection system and an intranet sensitive information disclosure evidence collection method based on a honeynet technology. The evidence collection system comprises a honeynet, an intranet and a user terminal which is connected into the intranet, wherein the honeynet comprises a honey bait sever, a honey wall and an evidence collection server; the honey bait server is connected into the intranet by the honey wall; the evidence collection server is connected with the honey wall; the honey bait server is used for presetting a honey bait; the honey wall is used or filtering and capturing an interaction data packet of the user terminal which accesses the honey bait through the intranet and transmitting the interaction data packet to the evidence collection server; the evidence collection server is used for collecting evidences for sensitive information disclosure behaviors in the intranet according to the received interaction data. The intranet sensitive information disclosure evidence collection system and the intranet sensitive information disclosure evidence collection method based on the honeynet technology have the advantages of increasing the effectiveness of evidence collection for the intranet sensitive information disclosure and satisfying the actual requirements on the intranet network safety.

Description

technical field [0001] The invention relates to the technical field of computer network security, in particular, to a system and method for leaking and obtaining evidence of sensitive information on an intranet based on honeynet technology. Background technique [0002] With the development of Internet technology, network scanning, the spread of worms and virus codes, and malicious attacks by hackers have become dangers that every host on the network may encounter at any time. There are currently a relative number of ways to deal with the above-mentioned dangers. As for the enterprise intranet, behaviors such as malicious attacks on intranet terminals and leakage of sensitive information on the intranet also pose a huge threat to the enterprise intranet. [0003] At present, the method of obtaining evidence for sensitive information leakage behavior in the enterprise intranet is mainly based on the audit behavior of log data. By analyzing the security logs recorded in secur...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06G06F17/30
CPCH04L63/0245H04L63/1491
Inventor 顾广宇张淑娟孙建王潇
Owner STATE GRID CORP OF CHINA
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products