Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Network safety situation awareness early-warning method and system based big data

A network security and situational awareness technology, applied in the field of network security, can solve problems such as low work efficiency, attack loss, and difficulty in finding security risks, and achieve the effect of improving security protection capabilities

Inactive Publication Date: 2016-05-04
STATE GRID CORP OF CHINA +1
View PDF2 Cites 111 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] These traditional security products can only defend against security threats from certain aspects, forming "islands of security defense" one by one, lacking effective integration and correlation analysis of massive multi-dimensional information security data, unable to produce synergistic effects, and unable to Make these security monitoring data an effective resource for upper-level security decision-making
[0004] Most of these traditional security defense facilities analyze and monitor the attacks that have occurred by analyzing the logs of certain security devices. They basically adopt the idea of ​​passive defense and lack the ability of network security situation awareness and linkage early warning. It is often too late to take corresponding emergency measures after a cyber attack, because the cyber attack has already happened and caused irreparable losses
[0005] These complex IT resources and their security defense facilities continuously generate a large number of security logs and events during the operation process, forming a large number of "information islands". Facing these huge and fragmented security big data, limited security managers, Operating the console interface and alarm window of various products is helpless, the work efficiency is extremely low, and it is difficult to find real hidden dangers

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Network safety situation awareness early-warning method and system based big data
  • Network safety situation awareness early-warning method and system based big data

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0030] In order to make the object, technical solution and advantages of the present invention clearer, the present invention will be described in further detail below in conjunction with specific embodiments and with reference to the accompanying drawings.

[0031] An embodiment of the present invention provides a big data-based network security situation awareness early warning method. refer to figure 1 , is a flowchart of a big data-based network security situational awareness early warning method according to an embodiment of the present invention.

[0032] The network security situational awareness early warning method based on big data comprises the following steps:

[0033] Step 101, collecting intelligence information from the Internet, non-governmental organizations, government agencies and companies.

[0034] In this example. Intelligence information mainly includes hacker attack behavior characteristics, vulnerability database, reputation database, and other secu...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a network safety situation awareness early-warning method and system based big data, and the method comprises the steps: collecting intelligence information from the Internet, non-governmental organizations, governmental agencies and interiors of companies; obtaining log and network flow generated by safety equipment, network equipment, a host and other safety protection systems, carrying out the real-time preprocessing of the collected original data, carrying out the standardization of the data after preprocessing, and converting the data into safety data with the unified standard; carrying out scene modeling according to different attack behaviors, carrying out correlation analysis through combining with the intelligence information and the safety data, and generating early-warning information; carrying out the check processing of the early-warning information, and carrying out the visualized display of the early-warning information after check. The method can achieve the complete sensing of a safety situation, the early warning of safety threats and the capability of timely handling and responding of a safety event, and improves the overall safety protection capability of a power system.

Description

technical field [0001] The invention relates to the technical field of network security, in particular to a big data-based network security situational awareness early warning method and system. Background technique [0002] With the continuous deepening of the application of emerging Internet technologies such as big data, cloud computing, Internet of Things, and industrial Internet, the degree of informatization of enterprises is becoming higher and higher, and the degree of dependence on information systems has reached an unprecedented height. At the same time, it has also led to Malicious information security incidents such as various new types of network attacks and sensitive information leakage occur frequently. According to the survey by the National Internet Emergency Response Center, in 2015, the number of high-risk vulnerability incidents involving important industries and government departments increased, the risk of basic application or general software vulnerabi...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L29/06
CPCH04L63/14H04L63/20
Inventor 刘世民齐四清孙添资朱继阳高敏任春雷王磊樊锐郭立勇
Owner STATE GRID CORP OF CHINA
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products