Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Event auditing method and device, terminal equipment and storage medium

An event and algorithm technology, applied in the field of information processing, can solve problems such as increased workload of auditors, decreased work efficiency, poor classification effect, etc., to achieve the effect of improving audit efficiency, reducing workload, and improving recognition accuracy

Pending Publication Date: 2020-04-21
GUANGDONG OPPO MOBILE TELECOMM CORP LTD
View PDF0 Cites 5 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

But this is not always the case in practice. In the case of a given output category of the Naive Bayesian model, it is assumed that the attributes are independent of each other. This assumption is often not true in practical applications. When the number of attributes is large or the attributes When the correlation is large, the classification effect is not good
Therefore, after screening using the Naive Bayesian classification model, auditors still need to manually audit the alarm events, which increases the workload of the auditors and reduces work efficiency

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Event auditing method and device, terminal equipment and storage medium
  • Event auditing method and device, terminal equipment and storage medium
  • Event auditing method and device, terminal equipment and storage medium

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0059] It should be understood that the specific embodiments described here are only used to explain the present invention, not to limit the present invention.

[0060]The main solution of the embodiment of the present invention is: by obtaining preset sample data, the sample data includes a training set and a test set composed of various event logs; The TF-IDF model is combined with a variety of machine learning algorithms to construct a fusion classification model; according to the fusion classification model, the risk level assessment is performed on the event logs in the test set. Therefore, through the TF-IDF model combined with a variety of machine learning algorithms, the risk level of the event log is evaluated, and the high-risk events in the massive security event log are intelligently identified, which greatly improves the identification accuracy of the event log and reduces the risk of high-risk events. The number of false positives of risk events reduces the workl...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses an event auditing method and device, terminal equipment and a storage medium, and the method comprises the steps: obtaining preset sample data which comprises a training set and a test set formed by various types of event logs; constructing a fusion classification model through a TF-IDF model created in advance based on a training set and a test set in the sample data and in combination with multiple machine learning algorithms; and performing risk level evaluation on the event logs in the test set according to the fusion classification model. According to the scheme ofthe invention, a TF-IDF model is combined with a plurality of machine learning algorithms to carry out risk level evaluation on the event logs, high-risk events in massive security event logs are intelligently identified, the identification accuracy of the event logs is greatly improved, the false alarm number of the high-risk events is reduced, the workload of auditors is reduced, the auditing efficiency is improved, and meanwhile, the auditing accuracy is also improved.

Description

technical field [0001] The present invention relates to the technical field of information processing, in particular to an event auditing method, device, terminal equipment and storage medium. Background technique [0002] Information security audit methods are usually based on specific rules to identify sensitive event logs, and cooperate with the naive Bayesian classification model to filter alarm events, filter out low suspicious alarm events, and display them to auditors through the security early warning platform for manual auditing . [0003] The prior art solution classifies and screens the alarm events through the naive Bayesian classification model. Since the model is single, the shortcomings of the naive Bayesian model will also be magnified. In theory, Naive Bayesian models have the smallest error rate compared to other classification methods. But this is not always the case in practice. In the case of a given output category of the Naive Bayesian model, it is a...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): G06F11/07G06K9/62G06N20/00
CPCG06F11/0775G06F11/079G06N20/00G06F18/241G06F18/25G06F18/214Y02D10/00
Inventor 李永双
Owner GUANGDONG OPPO MOBILE TELECOMM CORP LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products