APT attack detection method based on event relation directed graph in network full traffic
A network event and event relationship technology, which is applied in the field of APT attack detection based on the directed graph of event relationship in the full network traffic, can solve problems such as sandbox detection failure, and achieve the effects of convenient backtracking, saving storage resources, and meticulous division
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment Construction
[0033] The present invention will be further described in detail below in conjunction with the reaction scheme and specific examples.
[0034] In order to make the above-mentioned features and advantages of the present invention more comprehensible, the present invention will be further described in detail below in conjunction with specific embodiments and accompanying drawings.
[0035] In this embodiment, the key network areas and devices such as the network egress, core switches, and routing devices of the monitored network environment are collected to collect all network traffic, and extract the links from the second layer link layer to the seventh layer application layer in the seven-layer network structure. store stream-based network metadata.
[0036] The network data anomaly detection device can be a detection device such as a desktop computer, a notebook computer, a palmtop computer, and a cloud server. Stream-based metadata capture for analytics.
[0037] Through t...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com