Method, device, storage medium and electronic equipment for maintaining security of network assets

CN116150718BActive Publication Date: 2026-09-25BEIJING TOPSEC NETWORK SECURITY TECH +2
View PDF 2 Cites 0 Cited by

Patent Information

Application Number
CN202211550319.2
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2022-12-05
Publication Date
2026-09-25
Estimated Expiration
2042-12-05

AI Technical Summary

Technical Problem

当运维人员在浏览器进行运维时,可能会存在无关人员或恶意人员在屏幕面前查看或偷窥网络资产的实际运维数据的情况,进而可能会导致重要的网络资产的数据信息发生泄漏,为网络资产带来极大的安全隐患

Benefits of technology

[0007]本申请的一些实施例通过对采集的终端屏幕前的热成像图像进展分析,确定是否停止运维网络资产,可以有效防止无关人员偷窥或窃取重要网络资产的数据信息,维护网络资产的运维安全,安全系数较高且可靠性较好。

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN116150718B_ABST
    Figure CN116150718B_ABST
Patent Text Reader

Abstract

Some embodiments of the present application provide a method, device, storage medium and electronic equipment for maintaining network asset security, the method comprising: collecting a thermal imaging image of heat source information in front of a screen of a terminal when a network asset is being operated and maintained, wherein the heat source information is generated by a person in front of the screen; and analyzing the thermal imaging image to determine whether to stop operating and maintaining the network asset. Some embodiments of the present application can provide security protection for network assets, and have good reliability.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This application relates to the field of network security technology, and more specifically, to a method, apparatus, storage medium, and electronic device for maintaining the security of network assets. Background Technology

[0002] With the continuous development of information network systems in enterprises and institutions, the scale of networks and the number of devices are rapidly expanding. The increasingly complex information network systems and the uncontrollable behavior of maintenance personnel have brought serious challenges to information system security.

[0003] Currently, in operation and maintenance security management systems, operation and maintenance personnel can perform operation and maintenance on relevant network assets through a browser. When operation and maintenance personnel perform operation and maintenance through a browser, there is a possibility that unauthorized or malicious personnel may view or spy on the actual operation and maintenance data of network assets in front of the screen, which may lead to the leakage of important network asset data and pose a great security risk to network assets.

[0004] Therefore, how to provide a technical solution for maintaining the security of network assets with high security has become an urgent technical problem to be solved. Summary of the Invention

[0005] The purpose of some embodiments of this application is to provide a method, apparatus, storage medium and electronic device for maintaining the security of network assets. The technical solutions of the embodiments of this application can effectively prevent unauthorized personnel from spying on or stealing the data information of important network assets, maintain the operational security of network assets, and have a high security factor and good reliability.

[0006] In a first aspect, some embodiments of this application provide a method for maintaining the security of network assets, including: when the network asset is being maintained, collecting a thermal imaging image of heat source information in front of the screen of a terminal, wherein the heat source information is generated by the person in front of the screen; analyzing the thermal imaging image to determine whether to stop maintaining the network asset.

[0007] Some embodiments of this application determine whether to stop the operation and maintenance of network assets by analyzing the thermal imaging images collected in front of the terminal screen. This can effectively prevent unauthorized personnel from spying on or stealing the data information of important network assets, maintain the operation and maintenance security of network assets, and has a high security factor and good reliability.

[0008] In some embodiments, the thermal imaging image is acquired at regular intervals, or the thermal imaging image is selected from a set of multiple frames of images of the target area acquired within a preset time period.

[0009] Some embodiments of this application can acquire heat source information in front of the screen in real time by periodically acquiring thermal imaging images or selecting one frame from multiple frames as a thermal imaging image, which is simple and efficient.

[0010] In some embodiments, analyzing the thermal imaging image to determine whether to stop the operation and maintenance of the network asset includes: if the analysis result of the thermal imaging image is confirmed to be safe, acquiring a face image in front of the screen, and determining whether to stop the operation and maintenance of the network asset based on the face image and the thermal imaging image; if the analysis result of the thermal imaging image is confirmed to be unsafe, stopping the operation and maintenance of the network asset.

[0011] Some embodiments of this application analyze thermal imaging images to confirm whether the heat source in front of the screen is safe. If it is safe, it is necessary to combine facial images to further determine whether to stop the operation and maintenance of network assets. If it is unsafe, the operation and maintenance of network assets can be terminated in time, which can achieve the security protection of network assets and prevent the leakage of network asset data.

[0012] In some embodiments, confirming that the analysis result of the thermal imaging image is safe includes: analyzing the number of human silhouettes in the thermal imaging image to obtain the number of heat sources in front of the screen, wherein one heat source corresponds to one person; if the number of heat sources is one, then the analysis result is confirmed to be safe.

[0013] Some embodiments of this application can identify the number of heat sources in front of the screen using thermal imaging images. When the number of heat sources is one, it can be confirmed that the screen is not being watched, thus preliminarily confirming safety and demonstrating high detection efficiency.

[0014] In some embodiments, determining whether to stop operating the network asset based on the facial image and the thermal image includes: comparing the thermal image and the facial image with preset thermal images and preset facial images respectively to determine whether to stop operating the network asset, wherein the preset thermal images and preset facial images are image information of the target personnel operating the network asset that are stored in advance.

[0015] Some embodiments of this application determine whether the person in front of the screen is the target person by comparing thermal imaging images and facial images with preset thermal imaging images and preset facial images. This can confirm whether to stop the operation and maintenance of network assets, realize the identity detection of the person in front of the screen, ensure that the operation and maintenance of network assets is in a secure external environment, and prevent data leakage.

[0016] In some embodiments, comparing the thermal image and the face image with preset thermal images and preset face images respectively to determine whether to stop the operation and maintenance of the network asset includes: if the thermal image is consistent with the preset thermal image and the face image is consistent with the preset face image, then confirm that the person in front of the screen is the target person, and continue to operate and maintain the network asset; if the thermal image is inconsistent with the preset thermal image and / or the face image is inconsistent with the preset face image, then confirm that the person in front of the screen is not the target person, and stop operating and maintaining the network asset.

[0017] Some embodiments of this application determine the operational status of network assets by comparing the consistency between thermal imaging images and face images with preset thermal imaging images and face images. This can effectively maintain the operational security of network assets, with a high security factor and good reliability.

[0018] In some embodiments, confirming that the analysis result of the thermal imaging image is unsafe includes: analyzing the number of human silhouettes in the thermal imaging image and confirming that the number of heat sources in front of the screen is greater than one, then confirming that the analysis result is unsafe.

[0019] Some embodiments of this application can quickly confirm that a screen is being watched and that there are safety hazards in the external environment when the number of heat sources in the thermal imaging image is greater than one. The confirmation process is simple and efficient.

[0020] In some embodiments, before confirming that the analysis result is unsafe, the method further includes: confirming that the distance of any heat source in the thermal imaging image is greater than a preset distance threshold; and / or analyzing at least two frames of the multi-frame images to confirm that a moving heat source exists in the at least two frames.

[0021] Some embodiments of this application can accurately identify safety hazards in front of the screen by confirming that the distance between the heat source and the screen exceeds a preset distance and / or that there is a moving heat source, thus avoiding misjudgment and achieving high accuracy.

[0022] In some embodiments, the method further includes: confirming the presence of a moving heat source in the at least two frames of images, and simultaneously confirming that the stationary time of the moving heat source exceeds a set threshold.

[0023] Some embodiments of this application confirm the presence of a moving heat source by using at least two frames of images and determining the stationary time of the moving heat source, which can enable accurate judgment of the situation in front of the screen and provide reliable data support for network security.

[0024] In some embodiments, before the terminal operates and maintains the network asset, the method further includes: creating an account for the target personnel operating and maintaining the network asset, and setting the network asset's attribute as a confidential asset; receiving the target personnel's operation instruction to log in to the account.

[0025] Some embodiments of this application can perform targeted security maintenance on important assets by setting account and confidentiality attributes for network assets, resulting in a high level of security.

[0026] Secondly, some embodiments of this application provide an apparatus for maintaining the security of network assets, including: a collection module configured to collect thermal imaging images of heat source information in front of a terminal screen when the network asset is being maintained, wherein the heat source information is generated by a person in front of the screen; and an analysis module configured to analyze the thermal imaging images to determine whether to stop maintaining the network asset.

[0027] Thirdly, some embodiments of this application provide a computer-readable storage medium having a computer program stored thereon, which, when executed by a processor, can implement the method described in any embodiment of the first aspect.

[0028] Fourthly, some embodiments of this application provide an electronic device including a memory, a processor, and a computer program stored in the memory and executable on the processor, wherein the processor, when executing the program, can implement the method as described in any embodiment of the first aspect.

[0029] Fifthly, some embodiments of this application provide a computer program product, the computer program product including a computer program, wherein the computer program, when executed by a processor, can implement the method described in any embodiment of the first aspect. Attached Figure Description

[0030] To more clearly illustrate the technical solutions of some embodiments of this application, the accompanying drawings used in some embodiments of this application will be briefly described below. It should be understood that the following drawings only show some embodiments of this application and should not be regarded as a limitation of the scope. For those skilled in the art, other related drawings can be obtained based on these drawings without creative effort.

[0031] Figure 1 A system diagram for maintaining network asset security is provided for some embodiments of this application;

[0032] Figure 2 One of the flowcharts for a method of maintaining network asset security provided in some embodiments of this application;

[0033] Figure 3A second flowchart illustrating a method for maintaining network asset security provided in some embodiments of this application;

[0034] Figure 4 Block diagrams of apparatus for maintaining network asset security provided for some embodiments of this application;

[0035] Figure 5 A schematic diagram of an electronic device provided for some embodiments of this application. Detailed Implementation

[0036] The technical solutions of some embodiments of this application will now be described with reference to the accompanying drawings.

[0037] It should be noted that similar reference numerals and letters in the following figures indicate similar items; therefore, once an item is defined in one figure, it does not need to be further defined and explained in subsequent figures. Furthermore, in the description of this application, terms such as "first," "second," etc., are used only to distinguish descriptions and should not be construed as indicating or implying relative importance.

[0038] In related technologies, as the scale of information network systems in enterprises and institutions gradually expands, the application of operation and maintenance security management systems is becoming increasingly widespread. Operation and maintenance security management systems can provide centralized access control, authorizing users for network assets and accounts, and limiting the access permissions for network assets. Operation and maintenance personnel can perform operation and maintenance operations on authorized assets through the operation and maintenance security management system. In the use of operation and maintenance security management systems, operation and maintenance personnel can perform operation and maintenance on relevant network assets (e.g., servers) through a browser. If unauthorized or malicious personnel view the server's operation and maintenance status on the screen, it may lead to the leakage of important server information. Existing technologies address this security risk by capturing facial images of people in front of the screen to confirm the security of the external environment. This relies on facial recognition and image analysis modules for "bystander" identification. First, the camera must capture a clear image of the face; then, it determines whether the image contains a "face" or a "non-face"; finally, it filters out "non-faces" and crops and analyzes the "face" information. However, this method may have monitoring vulnerabilities in certain scenarios. For example, when a face is far from the terminal screen, or when the face is not fully displayed (e.g., a side profile or a mask obscuring the face), there is a high probability that it will not be recognized as a face. Furthermore, when a face or body passes in front of the screen at a relatively fast speed, the face recognition module alone may not be able to effectively capture a valid face completely. As can be seen from the above-mentioned related technologies, existing technologies suffer from errors in determining whether the screen shows a "single person / surrounding" view due to the ineffective capture of faces, thus affecting the confidentiality of network assets and posing a significant security risk to network assets.

[0039] In view of this, some embodiments of this application provide a method for maintaining the security of network assets. This method obtains thermal imaging images by collecting heat source information in front of the terminal screen. By analyzing the thermal imaging images, it preliminarily confirms whether there is a "bystander" in front of the screen, and then determines whether to stop the operation and maintenance of the network assets. After determining that there is no "bystander" in front of the screen, it is also necessary to combine facial images to confirm whether the person in front of the screen is a target personnel with operation and maintenance permissions. Some embodiments of this application can effectively prevent unauthorized personnel from spying on or stealing important network asset data, maintain the operational security of network assets, and have a high security level and good reliability.

[0040] The following is in conjunction with the appendix Figure 1 The present application provides exemplary embodiments of a system structure for maintaining network asset security.

[0041] like Figure 1 As shown, some embodiments of this application provide a system for maintaining network asset security. The system includes a terminal 100 and a camera device 200 connected to the terminal 100. The camera device 200 includes a heat source acquisition device 201 and an image acquisition device 202. The terminal 100 can control the heat source acquisition device 201 of the camera device 200 to acquire heat source information in front of the terminal 100's screen, and the image acquisition device 202 to acquire image information in front of the terminal 100's screen, obtaining thermal imaging images and facial images. The terminal 100 first analyzes the thermal imaging images. If the analysis reveals multiple people in front of the screen, the network asset maintenance interface is immediately closed, and network asset maintenance is stopped. If the analysis reveals only one person in front of the screen, the terminal 100 also needs to compare the thermal imaging images and facial images with preset thermal imaging images and preset facial images in a local user information database. If they match, network asset maintenance continues; otherwise, network asset maintenance is stopped.

[0042] In some embodiments of this application, the positional relationship between the heat source acquisition device 201 and the image acquisition device 202 in the camera device 200 and the terminal 100 can be set according to actual conditions. For example, the camera device 200 can be located above or to the side of the terminal 100. The heat source acquisition device 201 can acquire heat source information within a preset area in front of the screen of the terminal 100. For example, the preset area is the heat source information and changes within 10m of the front of the screen, or the preset area is the heat source information and changes within 10m² directly in front of the screen. The preset area can be set based on the performance of the heat source acquisition device 201, or it can be set by staff according to the security needs of network assets. This application embodiment does not specifically limit this. The image acquisition device 202 can acquire the facial image of the maintenance personnel in front of the screen.

[0043] In some other embodiments of this application, if the terminal 100 itself has the function of acquiring thermal imaging images and facial images, then the camera device 200 may not be required.

[0044] In some embodiments of this application, terminal 100 may be a mobile terminal or a non-portable computer terminal, and this application does not make specific limitations here.

[0045] The following is in conjunction with the appendix Figure 2 This application provides an exemplary embodiment of a process for maintaining network asset security, executed by terminal 100.

[0046] Please see the appendix Figure 2 , Figure 2 A flowchart illustrating a method for maintaining network asset security is provided for some embodiments of this application. The method for maintaining network asset security includes:

[0047] S210, when network assets are being maintained, collect thermal imaging images of heat source information in front of the terminal screen, wherein the heat source information is generated by the person in front of the screen.

[0048] For example, in some embodiments of this application, terminal 100 can control heat source acquisition device 201 to acquire thermal imaging images of heat source information in front of the screen.

[0049] In some embodiments of this application, the thermal imaging image is acquired at regular intervals, or the thermal imaging image is selected from multiple frames of images of the target area acquired within a preset time period.

[0050] For example, in some embodiments of this application, the terminal 100 can set a time period for acquiring thermal imaging images (e.g., a time period of 2s, 10s, or 30s, etc.), so that the heat source acquisition device 201 can acquire thermal imaging images at regular intervals according to the time period. Alternatively, the terminal 100 can also control the heat source acquisition device 201 to acquire multiple frames of images within a preset time period. For example, if the preset time period is 5s, 10 frames of images are acquired within 5s, and one key frame image is selected from the 10 frames as the thermal imaging image. The embodiments of this application are not limited to this.

[0051] In some embodiments of this application, before executing S210, the method for maintaining network asset security further includes: creating an account for the target personnel who operate and maintain the network asset, and setting the network asset's attribute as a confidential asset; receiving the operation instruction from the target personnel to log in to the account.

[0052] For example, in some embodiments of this application, when an administrator creates an account for an operations and maintenance (O&M) personnel (as a specific example of a target personnel) on terminal 100, they need to upload the O&M personnel's facial image (as a specific example of a preset facial image) and a human thermal image (as a specific example of a preset thermal image), and store them in the user information database. Simultaneously, when creating an account for a network asset, the administrator needs to set the confidentiality attribute of the network asset (confidentiality attributes include: confidential assets and non-confidential assets). When the O&M personnel are operating and maintaining the network asset, after successfully logging into their account, the system first determines the confidentiality attribute of the current network asset. If it is a confidential asset, subsequent image acquisition and a series of identification and verification steps are performed. If it is a non-confidential asset, the image verification mechanism is skipped, and the network asset is operated and maintained normally.

[0053] S220, Analyze the thermal imaging image to determine whether to stop operating the network asset.

[0054] The implementation process of S220 is illustrated below.

[0055] In some embodiments of this application, S220 may include:

[0056] S221, when the analysis result of the thermal imaging image is confirmed to be safe, acquire the face image in front of the screen, and determine whether to stop the operation and maintenance of the network asset based on the face image and the thermal imaging image;

[0057] For example, in some embodiments of this application, terminal 100 transmits thermal imaging images to a graphics analysis module to analyze the thermal imaging images and confirm whether the environment in front of the screen is safe. If the initial analysis confirms that the environment is safe, image acquisition device 202 needs to acquire facial images of the person in front of the screen and further combine the thermal imaging images with the facial images to determine whether to stop maintaining network assets.

[0058] In some embodiments of this application, S221 may include: analyzing the number of human silhouettes in the thermal imaging image to obtain the number of heat sources in front of the screen, wherein one heat source corresponds to one person; if the number of heat sources is one, then the analysis result is confirmed to be safe.

[0059] For example, in some embodiments of this application, the number of human silhouettes formed by heat source information in front of the screen can be quickly and accurately determined to identify the number of people in front of the screen. If the number is one, the analysis result of the thermal imaging image is preliminarily confirmed as safe. The human silhouette can be a complete face silhouette or a side profile silhouette. The heat source acquisition device 201 supports the detection of heat sources of various shapes with high accuracy. It should be noted that the thermal image's facial silhouette, under normal circumstances, appears as a frontal cross-section of the face; under abnormal circumstances, it appears as a side profile cross-section, which can distinguish between the "person in question" and someone "passing by behind."

[0060] In some embodiments of this application, S221 may include: comparing the thermal imaging image and the face image with preset thermal imaging images and preset face images respectively, and determining whether to stop the operation and maintenance of the network asset, wherein the preset thermal imaging image and the preset face image are image information of the target personnel for operating and maintaining the network asset that are stored in advance.

[0061] For example, in some embodiments of this application, when it is confirmed that there is only one person in front of the screen, in order to ensure that the maintenance personnel in front of the screen who are maintaining the network assets are authorized personnel, the terminal 100 may call the authorization verification module to read the portrait image and human thermal image from the user information database. By comparing the thermal image and the face image with the images in the user information database respectively, it is confirmed whether they are the same person, and then it is determined whether to stop maintaining the network assets.

[0062] In some embodiments of this application, S221 may include: if the thermal imaging image is consistent with the preset thermal imaging image and the face image is consistent with the preset face image, then confirm that the person in front of the screen is the target person and continue to operate the network asset; if the thermal imaging image is inconsistent with the preset thermal imaging image and / or the face image is inconsistent with the preset face image, then confirm that the person in front of the screen is not the target person and stop operating the network asset.

[0063] For example, in some embodiments of this application, existing thermal imaging image recognition algorithms and face recognition algorithms are used to confirm whether the thermal imaging image and the human body thermal imaging image are the same, and whether the face image and the portrait image are the same. If they are all the same, it indicates that the maintenance personnel in front of the screen are authorized maintenance personnel, and a maintenance session is created to continue maintaining the network assets. If at least one of the thermal imaging image and the face image is different, it indicates that the maintenance personnel in front of the screen are not authorized maintenance personnel. In this case, the maintenance session of the network assets can be directly disconnected, and relevant prompt information can be displayed, or the screen can be turned off directly to stop the maintenance of the network assets.

[0064] S222, if the analysis result of the thermal imaging image is confirmed to be unsafe, stop the operation and maintenance of the network asset.

[0065] For example, in some embodiments of this application, when the analysis result of the thermal imaging image by the terminal 100 is unsafe, the operation and maintenance session of the network asset can be directly disconnected and a relevant prompt message can be displayed, or the screen can be turned off directly, so as to achieve the purpose of stopping the operation and maintenance of the network asset.

[0066] In some embodiments of this application, S222 may include: analyzing the number of human silhouettes in the thermal imaging image, and if it is confirmed that the number of heat sources in front of the screen is greater than one, then the analysis result is confirmed as unsafe.

[0067] For example, in some embodiments of this application, the number of people in front of the screen is determined based on the human-shaped outline formed by the heat source information in front of the screen. If the number of people is not unique (that is, the number of heat sources is greater than one), the analysis result is confirmed as unsafe, meaning that the screen is being viewed by multiple people, and there is a security risk to the network assets being maintained.

[0068] In order to achieve accurate determination of the safety in front of the screen, in some embodiments of this application, S222 may include: before confirming that the analysis result is unsafe, including: confirming that the distance of any heat source in the thermal imaging image is greater than a preset distance threshold; and / or, analyzing at least two frames of the multi-frame images to confirm that there is a moving heat source in the at least two frames.

[0069] For example, in some embodiments of this application, under normal circumstances, when maintenance personnel are operating on the screen of terminal 100, they should be sitting upright and relatively close to the screen. Therefore, the situation of the person in front of the screen can also be confirmed by a preset distance threshold. For example, the preset distance threshold is 30cm. By analyzing the thermal imaging image, it can be found that a person is 50cm away from the screen. At this time, it can be confirmed that there is a "bystander" in front of the screen, and thus the analysis result of the thermal imaging image is confirmed as unsafe. It should be noted that the thermal spectrum color of the thermal imaging image can be used as a basis for determining distance. Generally, different distances between the human body and the heat source acquisition device 201 will form images with different degrees of warm and cool tones. The size of the thermal spectrum graphic of the thermal imaging image can also be used as a basis for determining the distance between the human body and the heat source acquisition device 201 according to the principle of "nearer is larger and farther is smaller". It should be understood that the embodiments of this application are not limited to this.

[0070] For example, in some other embodiments of this application, at least two frames of images can be analyzed to confirm the presence of a moving heat source. For instance, if a person is located 50 cm to the left of the screen in the first frame, and the second frame shows that they have moved from 50 cm to 50 cm in front of the screen, it can be confirmed that there is a moving person (i.e., a moving heat source) in front of the screen, thus confirming that the analysis result of the thermal imaging image is unsafe. Alternatively, multiple frames of images collected within a preset time period can be analyzed to confirm the presence of a moving person. The embodiments of this application are not limited to these methods.

[0071] For example, in some other embodiments of this application, a preset distance threshold between the heat source and the screen, along with the presence of a moving heat source, can be comprehensively determined to confirm whether there are any irrelevant personnel in the thermal imaging image, thereby confirming that the analysis result of the thermal imaging image is unsafe. For example, if there are three people in front of the screen, and one of them is 40cm away from the screen, and this person's position has moved in two consecutive frames, it can be accurately determined that there are suspicious personnel in front of the screen, thus obtaining the analysis result of the thermal imaging image as unsafe.

[0072] In some embodiments of this application, S222 may include: confirming that a moving heat source exists in the at least two frames of images, and simultaneously confirming that the stationary time of the moving heat source exceeds a set threshold.

[0073] For example, in some embodiments of this application, when a moving person is present, the time the person remains stationary in front of the screen can be analyzed. If the stationary time exceeds a set threshold, the analysis result of the thermal imaging image is considered unsafe. This method can accurately determine the presence of a suspicious person in front of the screen. For example, the set threshold could be 3 seconds or 5 seconds, etc., and this application does not specifically limit it.

[0074] As can be seen from the above embodiments, some embodiments of this application can effectively solve the identification and verification vulnerabilities caused by incomplete facial data collection when maintenance personnel are maintaining important network assets due to reasons such as "eavesdroppers" quickly passing by the PC (i.e., terminal 100) or being far away from the PC.

[0075] The following is in conjunction with the appendix Figure 3 The present application provides an exemplary embodiment of the specific implementation process for maintaining network asset security.

[0076] Please see the appendix Figure 3 , Figure 3 This document provides a flowchart of a method for maintaining network asset security, as illustrated in some embodiments of this application. It should be noted that in the following embodiments, the network asset is a server, and when creating an operator's account, the operator's facial image and thermal image have been uploaded to the user information database, and the server is set as a confidential asset.

[0077] The above process is illustrated below by example.

[0078] S310 receives operation instructions from target personnel's login accounts to maintain network assets.

[0079] For example, as a specific example of this application, the operations and maintenance personnel log in to the server account using account information. After the account information is verified, the operations and maintenance personnel can perform operations and maintenance on the server.

[0080] S320, a thermal imaging image of the heat source information in front of the terminal screen.

[0081] For example, as a specific example of this application, the heat source acquisition device 201 monitors the heat source information and changes within 10m of the front of the screen of the terminal in real time. The heat source acquisition device 201 acquires the heat source information in front of the screen in real time to obtain a thermal imaging image.

[0082] S330: Analyze the thermal imaging image to determine if the analysis result is safe. If yes, proceed to S340; otherwise, proceed to S370.

[0083] For example, as a specific example of this application, the image analysis module of terminal 100 analyzes the thermal imaging image to confirm whether the analysis result is safe. For example, at least one of the following can be used to determine whether the analysis result is safe: the number of heat sources, the distance of the heat sources from the screen, and whether the heat sources are moving. Specific determination methods can be found above. Figure 2 To avoid repetition, the method embodiments provided will not be described in detail here.

[0084] S340, captures the face image in front of the screen.

[0085] For example, as a specific example of this application, the image acquisition device 202 acquires the facial image of the maintenance personnel in front of the screen.

[0086] S350: Compare the thermal imaging image and the face image with the preset thermal imaging image and the preset face image respectively to confirm whether the images are consistent. If they are, proceed to S360; otherwise, proceed to S370.

[0087] For example, as a specific example of this application, terminal 100 uses a thermal imaging recognition algorithm to analyze a thermal imaging image and a human thermal imaging image in a user information database to confirm whether they are consistent. It also uses a face recognition algorithm to analyze a face image and a human portrait image in a user information database to confirm whether they are consistent. If both are consistent, then S360 is executed; otherwise, S370 is executed.

[0088] S360 continues to maintain network assets.

[0089] For example, as a specific example of this application, an operations and maintenance session is created, allowing operations and maintenance personnel to continue operating the server.

[0090] S370, cease maintenance of network assets.

[0091] For example, as a specific example of this application, the operation and maintenance session is terminated, and a prompt message is displayed on the screen, refusing the operation and maintenance personnel from continuing to operate the server. Alternatively, the screen can be turned off to end the operation and maintenance.

[0092] As can be seen from some embodiments of this application, this application, based on thermal imaging image analysis and combined with facial recognition, enables real-time identification of important network assets during operation and maintenance, ensuring the security of important asset information. Simultaneously, this application can both guarantee the authenticity of operation and maintenance personnel and prevent information leakage caused by onlookers or passersby, thereby solving the problem of confidential operation and maintenance of important assets.

[0093] Please refer to Figure 4 , Figure 4 The diagram illustrates a block diagram of an apparatus for maintaining network asset security provided in some embodiments of this application. It should be understood that this apparatus corresponds to the method embodiments described above and is capable of performing the various steps involved in the method embodiments. The specific functions of this apparatus can be found in the description above; detailed descriptions are omitted here to avoid repetition.

[0094] Figure 4 The device for maintaining network asset security includes at least one software function module that can be stored in a memory or embedded in the device in the form of software or firmware. The device for maintaining network asset security includes: a data acquisition module 410, configured to acquire thermal imaging images of heat source information in front of a terminal screen when the network asset is being maintained, wherein the heat source information is generated by the person in front of the screen; and an analysis module 420, configured to analyze the thermal imaging images to determine whether to stop maintaining the network asset.

[0095] In some embodiments of this application, the thermal imaging image is acquired at regular intervals, or the thermal imaging image is selected from multiple frames of images of the target area acquired within a preset time period.

[0096] In some embodiments of this application, the analysis module 420 is configured to, when the analysis result of analyzing the thermal imaging image is confirmed to be safe, acquire a face image in front of the screen, and determine whether to stop the operation and maintenance of the network asset based on the face image and the thermal imaging image; and when the analysis result of analyzing the thermal imaging image is confirmed to be unsafe, stop the operation and maintenance of the network asset.

[0097] In some embodiments of this application, the analysis module 420 is configured to analyze the number of human silhouettes in the thermal imaging image to obtain the number of heat sources in front of the screen, wherein one heat source corresponds to one person; if the number of heat sources is one, the analysis result is confirmed to be safe.

[0098] In some embodiments of this application, the analysis module 420 is configured to compare the thermal imaging image and the face image with preset thermal imaging images and preset face images respectively, and determine whether to stop the operation and maintenance of the network asset, wherein the preset thermal imaging image and the preset face image are image information of the target personnel for operating and maintaining the network asset that are stored in advance.

[0099] In some embodiments of this application, the analysis module 420 is configured to, if the thermal imaging image is consistent with the preset thermal imaging image and the face image is consistent with the preset face image, then confirm that the person in front of the screen is the target person and continue to operate the network asset; if the thermal imaging image is inconsistent with the preset thermal imaging image and / or the face image is inconsistent with the preset face image, then confirm that the person in front of the screen is not the target person and stop operating the network asset.

[0100] In some embodiments of this application, the analysis module 420 is configured to analyze the number of human silhouettes in the thermal imaging image, and if it is confirmed that the number of heat sources in front of the screen is greater than one, then the analysis result is confirmed as unsafe.

[0101] In some embodiments of this application, the analysis module 420 is configured to confirm that the distance to any heat source in the thermal imaging image is greater than a preset distance threshold; and / or to analyze at least two frames of the multi-frame images to confirm that a moving heat source exists in the at least two frames.

[0102] In some embodiments of this application, the analysis module 420 is configured to confirm the presence of a moving heat source in the at least two frames of images, and to confirm that the stationary time of the moving heat source exceeds a set threshold.

[0103] In some embodiments of this application, before the acquisition module 410, the device for maintaining network asset security further includes: an operation and maintenance module (not shown in the figure), configured to create an account for the target personnel operating and maintaining the network asset, and set the attribute of the network asset as a confidential asset; and receive operation instructions from the target personnel to log in to the account.

[0104] Some embodiments of this application also provide a computer-readable storage medium having a computer program stored thereon, which, when executed by a processor, can perform the operation of any of the methods corresponding to the methods provided in the above embodiments.

[0105] Some embodiments of this application also provide a computer program product, which includes a computer program, wherein when the computer program is executed by a processor, it can implement the operation of any of the methods corresponding to the above embodiments provided in the above embodiments.

[0106] like Figure 5 As shown, some embodiments of this application provide an electronic device 500, which includes a memory 510, a processor 520, and a computer program stored in the memory 510 and executable on the processor 520. When the processor 520 reads the program from the memory 510 via a bus 530 and executes the program, it can implement the methods of any of the above embodiments.

[0107] Processor 520 can process digital signals and can include various computing architectures. For example, it can be a complex instruction set computer architecture, a reduced instruction set computer architecture, or an architecture that implements multiple instruction set combinations. In some examples, processor 520 can be a microprocessor.

[0108] The memory 510 can be used to store instructions executed by the processor 520 or data related to the execution of instructions. These instructions and / or data may include code for implementing some or all of the functions of one or more modules described in the embodiments of this application. The processor 520 of this disclosure embodiment can be used to execute the instructions in the memory 510 to implement the methods shown above. The memory 510 includes dynamic random access memory, static random access memory, flash memory, optical memory, or other memories well known to those skilled in the art.

[0109] The above description is merely an embodiment of this application and is not intended to limit the scope of protection of this application. Various modifications and variations can be made to this application by those skilled in the art. Any modifications, equivalent substitutions, improvements, etc., made within the spirit and principles of this application should be included within the scope of protection of this application. It should be noted that similar reference numerals and letters in the following figures indicate similar items; therefore, once an item is defined in one figure, it does not need to be further defined and explained in subsequent figures.

[0110] The above description is merely a specific embodiment of this application, but the scope of protection of this application is not limited thereto. Any variations or substitutions that can be easily conceived by those skilled in the art within the scope of the technology disclosed in this application should be included within the scope of protection of this application. Therefore, the scope of protection of this application should be determined by the scope of the claims.

[0111] It should be noted that, in this document, relational terms such as "first" and "second" are used only to distinguish one entity or operation from another, and do not necessarily require or imply any such actual relationship or order between these entities or operations. Furthermore, the terms "comprising," "including," or any other variations thereof are intended to cover non-exclusive inclusion, such that a process, method, article, or apparatus that comprises a list of elements includes not only those elements but also other elements not expressly listed, or elements inherent to such a process, method, article, or apparatus. Without further limitations, an element defined by the phrase "comprising one..." does not exclude the presence of other identical elements in the process, method, article, or apparatus that includes said element.

Claims

1. A method for maintaining the security of network assets, characterized in that, include: When network assets are being maintained, thermal imaging images of heat sources in front of the terminal screen are collected, wherein the heat source information is generated by the person in front of the screen. The thermal imaging images are analyzed to determine whether to stop the operation and maintenance of the network assets. The step of analyzing the thermal imaging image to determine whether to stop operating the network asset includes: If the analysis result of the thermal imaging image is confirmed to be safe, the face image in front of the screen is acquired, and based on the face image and the thermal imaging image, it is determined whether to stop the operation and maintenance of the network asset. If the analysis result of the thermal imaging image is confirmed to be unsafe, the operation and maintenance of the network asset shall be stopped. The confirmation that the analysis result of the thermal imaging image is unsafe includes: If the number of human silhouettes in the thermal imaging image is analyzed, and it is confirmed that the number of heat sources in front of the screen is greater than one and the thermal map corresponding to the human silhouette includes a side profile view, and if it is confirmed that the distance of any heat source in the thermal imaging image is greater than a preset distance threshold, and if at least two frames in the multi-frame image are analyzed, and it is confirmed that there is a moving heat source in the at least two frames, and if it is confirmed that the stationary time of the moving heat source exceeds a set threshold, then the analysis result is confirmed to be unsafe. Prior to the maintenance of the terminal network assets, the method further includes: Create an account for the target personnel responsible for operating and maintaining the network assets, and set the network assets to be classified as confidential assets; Receive the operation instruction from the target person to log in to the account.

2. The method as described in claim 1, characterized in that, The thermal imaging image is acquired at regular intervals, or the thermal imaging image is selected from multiple frames of images of the target area acquired within a preset time period.

3. The method as described in claim 1, characterized in that, The confirmation that the analysis result of the thermal imaging image is safe includes: The number of human silhouettes in the thermal imaging image is analyzed to obtain the number of heat sources in front of the screen, wherein one heat source corresponds to one person; If there is only one heat source, then the analysis result is confirmed to be safe.

4. The method as described in claim 3, characterized in that, The step of determining whether to stop operating the network asset based on the facial image and the thermal image includes: The thermal imaging image and the face image are compared with preset thermal imaging images and preset face images respectively to determine whether to stop the operation and maintenance of the network asset. The preset thermal imaging image and the preset face image are image information of the target personnel who are pre-stored for the operation and maintenance of the network asset.

5. The method as described in claim 4, characterized in that, The step of comparing the thermal imaging image and the face image with preset thermal imaging images and preset face images respectively to determine whether to stop the operation and maintenance of the network asset includes: If the thermal imaging image matches the preset thermal imaging image, and the face image matches the preset face image, then the person in front of the screen is confirmed to be the target person, and the network asset maintenance continues. If the thermal imaging image is inconsistent with the preset thermal imaging image, and / or the face image is inconsistent with the preset face image, then it is confirmed that the person in front of the screen is not the target person, and the operation and maintenance of the network asset is stopped.

6. A device for maintaining the security of network assets, characterized in that, include: The acquisition module is configured to acquire thermal imaging images of heat source information in front of the terminal screen when network assets are being maintained, wherein the heat source information is generated by the person in front of the screen. The analysis module is configured to analyze the thermal imaging image to determine whether to stop the operation and maintenance of the network asset. Specifically, the analysis module is configured to acquire a face image in front of the screen when the analysis result of analyzing the thermal imaging image is confirmed to be safe, and determine whether to stop operating the network asset based on the face image and the thermal imaging image. If the analysis result of the thermal imaging image is confirmed to be unsafe, the operation and maintenance of the network asset shall be stopped. The analysis module is specifically configured to analyze the number of human silhouettes in the thermal imaging image, confirm that the number of heat sources in front of the screen is greater than one and the thermal map corresponding to the human silhouette includes a side profile view, confirm that the distance of any heat source in the thermal imaging image is greater than a preset distance threshold, and analyze at least two frames of the multi-frame image to confirm that there is a moving heat source in the at least two frames of the image, and confirm that the stationary time of the moving heat source exceeds a set threshold, then confirm that the analysis result is unsafe; The device further includes: The operation and maintenance module is used to create accounts for the target personnel who are responsible for the operation and maintenance of the network assets, and to set the network assets to be confidential assets; and to receive operation instructions from the target personnel to log in to the accounts.

7. A computer-readable storage medium, characterized in that, The computer-readable storage medium stores a computer program, wherein the computer program, when executed by a processor, performs the method as described in any one of claims 1-5.

8. A computer program product, characterized in that, The computer program product includes a computer program, wherein the computer program is executed by a processor to perform the method as described in any one of claims 1-5.

9. An electronic device, characterized in that, The method includes a memory, a processor, and a computer program stored in the memory and running on the processor, wherein the computer program is executed by the processor to perform the method as described in any one of claims 1-5.

Citation Information

Patent Citations

  • Data protecting method and device

    CN107437012A

  • Cadre personnel digital archive remote consulting terminal equipment

    CN112765693A