Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Abnormal behavior sequence association processing method and device based on time axis, equipment and storage medium

A processing method and time axis technology, applied in the field of log processing, can solve problems such as poor detection results, and achieve the effect of solving poor detection results

Inactive Publication Date: 2020-04-28
BEIJING YOUTEJIE INFORMATION TECH
View PDF6 Cites 8 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] The main purpose of this application is to provide a time axis-based abnormal behavior sequence correlation processing method, device, equipment, and storage medium to solve the problem of poor detection effect of abnormal behavior

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Abnormal behavior sequence association processing method and device based on time axis, equipment and storage medium
  • Abnormal behavior sequence association processing method and device based on time axis, equipment and storage medium
  • Abnormal behavior sequence association processing method and device based on time axis, equipment and storage medium

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0031] In order to enable those skilled in the art to better understand the solution of the present application, the technical solution in the embodiment of the application will be clearly and completely described below in conjunction with the accompanying drawings in the embodiment of the application. Obviously, the described embodiment is only It is an embodiment of a part of the application, but not all of the embodiments. Based on the embodiments in this application, all other embodiments obtained by persons of ordinary skill in the art without creative efforts shall fall within the scope of protection of this application.

[0032] It should be noted that the terms "first" and "second" in the description and claims of the present application and the above drawings are used to distinguish similar objects, but not necessarily used to describe a specific sequence or sequence. It should be understood that the data so used may be interchanged under appropriate circumstances for...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses an abnormal behavior sequence association processing method and a device based on a time axis, equipment and a storage medium. The method comprises the steps of collecting logsin a centralized mode, and obtaining formatted logs through unified formatting; screening out abnormal behavior logs from the formatted logs according to a predetermined rule; establishing a time axis according to the timestamp of the abnormal behavior log; displaying the abnormal log information hashed in different time dimensions, and distinguishing different types of field information by adopting different colors; and displaying an abnormal event occurrence condition associated in a preset time range taking the threat alarm occurrence time as a central point on the time axis, so that the abnormal behavior sequence association processing realizes traceability. According to the method, the technical problem of poor detection effect of abnormal behaviors is solved. According to the method, the abnormal event can be effectively detected, and the correlation analysis can reveal the root cause of the abnormality, thereby improving the emergency response capability of a detection system.

Description

technical field [0001] The present application relates to the field of log processing, and in particular, relates to a method, device, device, and storage medium based on a timeline-based correlation processing of abnormal behavior sequences. Background technique [0002] Log data is the foundation of many enterprise applications such as troubleshooting, monitoring, security, compliance, and electronic forensics. In-depth analysis of log data can yield a lot of valuable information. [0003] The inventors found that the detection technology usually leads to the problem of high false alarm rate and low accuracy rate, and furthermore, some new unknown threat behaviors cannot be detected. [0004] Aiming at the problem of poor detection effect of abnormal behavior in related technologies, no effective solution has been proposed yet. Contents of the invention [0005] The main purpose of the present application is to provide a method, device, device, and storage medium based ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Applications(China)
IPC IPC(8): G06F11/07
CPCG06F11/0775G06F11/079
Inventor 施泽寰梁玫娟
Owner BEIJING YOUTEJIE INFORMATION TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products