APT heuristic detection method and system based on abnormal component association
A detection method and heuristic technology, applied in the direction of platform integrity maintenance, etc., can solve the problem of inability to detect APT attack methods, and achieve the effect of increasing detection uncertainty, reducing concealment, and avoiding frequent update of virus database.
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment Construction
[0034] In order to enable those skilled in the art to better understand the technical solutions in the embodiments of the present invention, and to make the above-mentioned objectives, features and advantages of the present invention more obvious and understandable, the technical solutions of the present invention will be further detailed below in conjunction with the accompanying drawings. Description.
[0035] The present invention is realized by the following methods:
[0036] An APT heuristic detection method based on abnormal component association, such as figure 1 Shown, including:
[0037] S101: monitor all startup processes in the system;
[0038] S102: Record the calling relationships and component environment information of all components, and cache them in the cache knowledge base;
[0039] S103: Record the calling relationship and component environment information of the newly acquired component by the system;
[0040] S104: Match the calling relationship and component envir...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com