Network crime platform identification method, system and device and computer storage medium

A technology for cybercrime and platform identification, applied in the information field, can solve the problems of unidentifiable websites and inability to monitor cybercrime platforms, etc.

Pending Publication Date: 2021-09-17
广州数智网络科技有限公司
View PDF4 Cites 2 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

However, this detection technology has a lot of deficiencies, including: (1) this type of method cannot identify websites without preset abnormal features; (2) in order to obtain feature elements, this method needs to obtain a large number of user logs, imitate The user requests the website to be monitored; (3) This method mainly solves the problem that the website is hijacked and tampered with, and it is a judgment on the abnormality of the normal website, but it cannot monitor the cybercrime platform

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Network crime platform identification method, system and device and computer storage medium
  • Network crime platform identification method, system and device and computer storage medium
  • Network crime platform identification method, system and device and computer storage medium

Examples

Experimental program
Comparison scheme
Effect test

specific Embodiment

[0041] S101: By sampling part of the network traffic in the mirrored Internet, capturing data packets at the mirrored exit and performing protocol analysis to restore real website information.

[0042] This step mainly implements optical sampling of Internet data, captures traffic and restores real websites. The data traffic on the mirrored Internet can be the network traffic of the data center computer room, the network traffic of the metropolitan area network, or the network traffic of the telecom operator. Sampling refers to a partial random selection of traffic in the Internet.

[0043] Specifically, by sampling part of the network traffic in the mirrored Internet, using network packet sniffing technology to capture the mirrored traffic, and then reorganizing these traffic sessions, and then performing in-depth network packet analysis, analyzing the website protocol and restoring the website in the traffic real information.

[0044] As a preferred implementation example,...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a network crime platform identification method, system and device and a computer storage medium. The method comprises the following steps: capturing a data packet of a mirroring outlet by sampling part of network traffic in the mirroring Internet, performing protocol analysis, and restoring real website information; collecting vocabularies of the network crime platform, especially high-frequency vocabularies of a novel network crime platform, sorting the vocabularies into a library, and collecting legal domain name information in the Internet; filtering the website through the collected high-frequency vocabularies and legal domain names of the network crimes, marking a suspected network crime platform label on data hitting the vocabularies of the network crimes after the legal domain names are filtered, and keeping all access records of the suspected network crime platform; carrying out feature extraction on the retained data, marking a network crime type label, and selecting a suitable deep learning model to carry out data modeling; and identifying the suspected network crime platform according to the identification model, and determining the website type of the crime platform according to the model identification result, thereby realizing the identification of the network illegal crime website.

Description

technical field [0001] The invention relates to the field of information technology, in particular to a network crime platform identification method, system, equipment and computer storage medium. Background technique [0002] At present, there is an abnormal website detection technology, which presets the domain names of abnormal websites and normal websites in advance, judges that the website to be detected is in the preset normal domain name, and extracts the characteristic text of the website to be monitored to match the characteristic elements of the preset legal website. The similarity and preset thresholds are used to judge whether the website is legal. However, this detection technology has a lot of deficiencies, including: (1) this type of method cannot identify websites without preset abnormal features; (2) in order to obtain feature elements, this method needs to obtain a large number of user logs, imitate The user requests the website to be monitored; (3) This...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F16/958G06F16/955G06N20/00H04L29/06
CPCG06F16/958G06F16/955H04L63/101H04L63/20H04L69/22G06N20/00
Inventor 李辉谭健铸郭伟
Owner 广州数智网络科技有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products