Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

An attack identification method and its identification system

An attack identification and path technology, applied in the field of network security, can solve problems such as the decrease of algorithm accuracy and incomplete feature dimensions, and achieve the effects of improving robustness, improving identification accuracy, and enriching feature dimensions.

Active Publication Date: 2019-06-11
BEIJING SHU AN XINYUN TECH CO LTD
View PDF6 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0007] The present invention aims to solve the problems of incomplete feature dimensions and decreased algorithm accuracy existing in existing network security algorithms

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • An attack identification method and its identification system
  • An attack identification method and its identification system
  • An attack identification method and its identification system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0060] In order to make the purpose, technical solutions and advantages of the embodiments of the present invention clearer, the technical solutions in the embodiments of the present invention will be clearly and completely described below in conjunction with the drawings in the embodiments of the present invention. Obviously, the described embodiments It is a part of embodiments of the present invention, but not all embodiments. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts belong to the protection scope of the present invention. It should be noted that, in the case of no conflict, the embodiments in the present application and the features in the embodiments can be combined arbitrarily with each other.

[0061] In order to determine whether a web request is a malicious access, you first need to know the relationship between the domain name of the website and the URI no...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The present invention provides an attack identification method and its identification system, comprising the following steps: S1: Obtain an access log flow of a domain name, based on the browsing path information of each user when accessing the domain name based on the access log flow, and based on the Browsing path information determines the browsing path law of the domain name; S2: calculates the probability of each user using a browsing path in the browsing path law when accessing the domain name according to the browsing path law; S3: obtains when a user visits the domain name The number of times the browsing path is taken; S4: Based on the number of times and the probability, determine the threat level of the user using the browsing path to access the domain name.

Description

technical field [0001] The invention relates to the technical field of network security, in particular to an attack identification method based on path context information and an identification system thereof. Background technique [0002] At present, mainstream network security algorithms use statistics and regular matching methods, such as statistics of IP-based pv information, ua information, packet size information, regular-based waf algorithm, etc., and then according to the corresponding variables in a certain time window The difference between the statistical information and the benchmark value is used to judge whether the visit is legitimate. The existing statistical methods mainly have the following shortcomings: [0003] 1. It is easy to lose context information and key features of threat identification; [0004] 2. It is greatly affected by the interference of noise, and the accuracy of the algorithm will be seriously affected in extreme or unexpected situations...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06H04L29/08H04L29/12
CPCH04L63/1408H04L63/1416H04L63/1425H04L67/02H04L61/4511
Inventor 夏俊海刘鑫琪陈哲丛磊
Owner BEIJING SHU AN XINYUN TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products