Terminal behavior alarm traceability analysis method, device, equipment and medium
A behavioral and terminal technology, applied in the field of communications, can solve the problems of re-traceability, secondary complete traceability, excessive security alarm security event handling, risk alarm audit fatigue, etc., so as to improve the detection rate, reduce the false alarm rate, and improve the correlation of events. and the effect of accuracy
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment Construction
[0039] The following will clearly and completely describe the technical solutions in the embodiments of the present invention with reference to the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only some, not all, embodiments of the present invention. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts belong to the protection scope of the present invention.
[0040] The present invention provides a method for source analysis of terminal behavior alarms, such as figure 1 shown, including the following steps:
[0041] S101. Monitor terminal behavior data, read and analyze the terminal behavior data in real time, obtain behavior logs and store them in a local database;
[0042] It should be noted that the above-mentioned local database has a full-volume log storage function, and the present invention can dynamically ...
PUM
Login to View More Abstract
Description
Claims
Application Information
Login to View More 

