Supercharge Your Innovation With Domain-Expert AI Agents!

Network security emergency response knowledge graph entity alignment method

A knowledge map and network security technology, applied in the field of network security emergency response knowledge map entity alignment, can solve the problems of lack of knowledge map graphic structure and context information utilization, neglect of analysis and logical consistency, and difficulty in obtaining, etc., to achieve fast and efficient emergency response Response, improve operation effect, improve the effect of accuracy rate

Active Publication Date: 2022-03-29
南京大数据安全技术有限公司
View PDF4 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

The acquisition of these known mappings requires a lot of manual work, which is often not easy to obtain in practical applications.
In addition, this type of model predicts the mapping of each entity independently, ignoring the overall analysis and logical consistency, which usually leads to some wrong mappings
[0006] However, the traditional model based on reasoning and vocabulary matching, although it makes up for the lack of logical reasoning of the former, has a certain degree of scalability, and does not require training on known mappings, but lacks the graphical structure and context of knowledge graphs. ability to use information

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Network security emergency response knowledge graph entity alignment method
  • Network security emergency response knowledge graph entity alignment method
  • Network security emergency response knowledge graph entity alignment method

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0093]In order to explain in detail the technical content, structural features, achieved goals and effects of the technical solution, the following will be described in detail in conjunction with specific embodiments and accompanying drawings.

[0094] The embodiment of the present invention provides a network security emergency response knowledge map entity alignment method, which is a key step in the process of building a comprehensive network security emergency response knowledge map, and generates accurate and effective scripts for subsequent in-depth analysis of security events. Realize fast and efficient emergency response, lay a solid foundation, and improve the operation effect of SOC (network security management platform). This method combines traditional reasoning techniques with state-of-the-art embedding techniques for knowledge map alignment, and can be implemented with PARIS (a probabilistic alignment model for relations, instances, and patterns) and multiple diff...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a network security emergency response knowledge graph entity alignment method, which comprises the following steps: inputting a knowledge graph into a PR module based on a PARIS model for calculation, and outputting a security event entity mapping set and a corresponding equivalence probability thereof; selecting a corresponding security event entity mapping with a high equivalence probability from the obtained security event entity mapping set as an alignment seed, and inputting the alignment seed into an SE module based on an embedded MultiKE model for training; outputting a security event entity mapping set obtained by security event entity embedding and through a proximity retrieval algorithm and a similarity score of each mapping corresponding to the security event entity mapping set; taking the obtained data as input to carry out the next round of calculation; after K iterations, the PR module outputs a security event entity mapping set; according to the scheme, a plurality of different network security emergency response knowledge maps can be fused into a knowledge map process with more comprehensive knowledge and higher correctness.

Description

technical field [0001] The invention relates to the field of network security knowledge graphs, in particular to a method for aligning network security emergency response knowledge graph entities. Background technique [0002] In recent years, network threats have become more and more frequent. The new generation of network threats has the characteristics of fast propagation, wide coverage, and long incubation time, which makes the staff of the network security emergency team face huge challenges. A routine incident response often involves multiple systems or programs. In the face of hundreds of cyber attacks every day, a large number of repeated manual operations are required, and the response efficiency is low. To this end, a new type of security emergency response technology SOAR is proposed. Based on the network security emergency response knowledge map, according to different threat scenarios, scripts are automatically programmed and generated to prevent attacks, which ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Applications(China)
IPC IPC(8): G06F16/36G06F40/189G06F40/216G06K9/62G06N5/04G06N3/04
CPCG06F16/367G06F40/189G06F40/216G06N5/04G06N3/045G06F18/22
Inventor 车洵孙捷梁小川胡牧金奎徐达刘志顺
Owner 南京大数据安全技术有限公司
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More