一种基于增量网络攻击分析学习的网络安全防御方法和系统

By using incremental network attack analysis and learning, and leveraging deep autoencoders and deep reinforcement learning models to dynamically adjust feature weights and defense strategies, this approach solves the problems of identifying new types of attacks and inflexible responses in existing technologies, thus achieving efficient network security defense.

CN120200810BActive Publication Date: 2026-07-17JIANGSU SIJI TECH SERVICE CO LTD

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
JIANGSU SIJI TECH SERVICE CO LTD
Filing Date
2025-03-25
Publication Date
2026-07-17

AI Technical Summary

Technical Problem

Existing network security defense technologies are unable to effectively identify new and variant attacks. Traditional machine learning models lack dynamic response capabilities, and deep learning models are not flexible enough in updating when faced with real-time network traffic, resulting in delayed responses.

Method used

We employ an incremental network attack analysis and learning approach. By using a deep autoencoder to reduce the dimensionality of traffic features, we construct an initial attack feature library. Then, by combining a sliding time window and a deep reinforcement learning model, we dynamically adjust feature weights and defense strategies, and update defense measures in real time.

Benefits of technology

It enables rapid identification and response to new types of attacks, enhances the flexibility and adaptability of network defense, reduces false alarm rates, and improves the accuracy and robustness of detection.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120200810B_ABST
    Figure CN120200810B_ABST
Patent Text Reader

Abstract

一种基于增量网络攻击分析学习的网络安全防御方法和系统。该方法包括,采集初始网络流量数据,提取特征向量。采集实时网络流量数据,基于滑动时间窗口进行分段处理,从分段数据中提取时序关联特征,将其与特征库匹配以识别潜在的攻击或异常行为。当所述时序关联特征与特征库不匹配时,将其标记为候选的新型攻击特征,计算与已知攻击特征的马氏距离确定其攻击变异度,动态调整所述时序关联特征的权重。将调整后的特征权重和实时流量特征输入深度强化学习检测模型,生成并更新网络安全防御策略。本发明的方案能够有效识别新型攻击行为,动态响应并优化防御策略,提升网络安全性。
Need to check novelty before this filing date? Find Prior Art