Fileless attack detection method, system, device and storage medium

CN114692143BActive Publication Date: 2026-04-14深圳融安网络科技有限公司
View PDF 1 Cites 0 Cited by

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2022-02-16
Publication Date
2026-04-14

Smart Images

  • Figure CN114692143B_ABST
    Figure CN114692143B_ABST
Patent Text Reader

Abstract

The application discloses a fileless attack detection method, system, device and storage medium. The fileless attack detection method comprises the following steps: when a process creation event is detected, process command information of a target process is acquired, and the process command information is audited and detected to obtain a first audit result; if it is determined according to the first audit result that the target process is allowed to be created, process network information in a network connection process initiated by the target process is acquired, the process network information is audited and detected, and whether the target process is released is determined according to a second audit result. The application solves the technical problem that the accuracy of fileless attack detection is low.
Need to check novelty before this filing date? Find Prior Art

Citation Information

Patent Citations

  • File-free attack detection method and device, electronic equipment and medium

    CN111753301A