Campus information sharing safety monitoring all-in-one machine and safety monitoring method
By combining matching association, monitoring collection, receiving processing and security analysis modules, the problem of insufficient intelligent analysis capabilities of the campus information sharing security monitoring all-in-one machine is solved, efficient and accurate security analysis and hidden danger discovery are achieved, and the security of the campus information sharing platform is ensured.
Patent Information
- Application Number
- CN202510871871.9
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- Filing Date
- 2025-06-26
- Publication Date
- 2025-09-05
- Estimated Expiration
- 2045-06-26
AI Technical Summary
The existing campus information sharing security monitoring all-in-one machine has poor intelligent analysis capabilities, resulting in large time delays and prone to abnormal identification errors. It has low accuracy and cannot effectively ensure the security of the campus information sharing platform.
The matching association module is used to obtain information from the campus information sharing platform and determine the target monitoring points; the monitoring acquisition module performs real-time monitoring and wireless transmission; the receiving and processing module performs preliminary data analysis and determines the type; the security analysis module uses the target intelligent analysis model to perform security analysis and determine abnormal access and transmission anomalies; the result presentation module presents the results and provides feedback.
It improves the efficiency and accuracy of security analysis, reduces time delays, enables timely detection and handling of potential safety hazards, and ensures the information security of the campus information sharing platform.
Smart Images

Figure CN120602184A_ABST
Abstract
Description
Technical Field
[0001] The present invention relates to the technical field of information security monitoring, and in particular to a campus information sharing security monitoring all-in-one machine and a security monitoring method. Background Art
[0002] Information sharing is an accelerator of social progress. Living in the information age, we must have a sense of sharing. With the development of campus informatization, the information construction model based on departmental professional applications has led to the independent management of internal affairs, resulting in unsmooth information flow, redundancy, and inefficiency. The campus information sharing platform has emerged as the times require. The campus information sharing platform will be based on the campus and serve teachers and students, providing important data support for teacher and student management, scientific research management, administrative management, audit management, decision support, etc. At the same time, it will serve teachers and students with information, activate and stimulate their daily learning and life, and inject vitality into the school.
[0003] Through the campus information sharing platform, unified sharing of information resources is achieved, and information resources are transmitted within various applications and between applications, so that campus information can be fully utilized in daily learning, work, and life, improving the existing bottlenecks in resource sharing and access, providing good resource services for scientific research and teaching in colleges and universities, and forming a digital campus with full business coverage. In order to ensure the campus informatization level and information security of the campus information sharing platform, a security monitoring all-in-one machine is used to realize campus information sharing security monitoring, ensure the implementation of campus information sharing, and improve the security of campus information. However, the existing campus information sharing security monitoring all-in-one machine has poor intelligent analysis capabilities, not only with large time delays, but also prone to abnormal recognition errors, resulting in low accuracy of the campus information sharing security monitoring all-in-one machine. Therefore, the present invention proposes a campus information sharing security monitoring all-in-one machine and a security monitoring method, which perform adaptive monitoring with the campus information sharing platform to improve the comprehensiveness and accuracy of security monitoring, and at the same time adopt a target intelligent analysis model for efficient security analysis, which can not only ensure the accuracy of the security analysis results and improve the accuracy of the campus information sharing security monitoring all-in-one machine, but also reduce time delays, so that the security analysis results can be determined in a shorter time, so that measures can be taken for the campus information sharing platform in a timely manner according to the security analysis results to ensure the campus information security of the campus information sharing platform. Summary of the Invention
[0004] The purpose of the present invention is to provide a campus information sharing security monitoring all-in-one machine and a security monitoring method to solve the problems raised in the above background technology.
[0005] To achieve the above objectives, the present invention provides the following technical solutions: a campus information sharing and security monitoring all-in-one machine, comprising:
[0006] The matching association module is used to obtain information from the campus information sharing platform, analyze the campus information sharing characteristics of the campus information sharing platform, and determine the target monitoring points;
[0007] The monitoring and acquisition module is used to deploy monitoring at target monitoring points, obtain campus information sharing monitoring information from the campus information sharing platform, and wirelessly transmit the campus information sharing monitoring information;
[0008] A receiving and processing module is used to receive campus information sharing monitoring information, perform preliminary data analysis on the campus information sharing monitoring information, and determine the campus information sharing type;
[0009] The security analysis module is used to determine the target intelligent analysis model according to the campus information sharing type, and use the target intelligent analysis model to perform security analysis on the corresponding campus information sharing monitoring information to determine whether there are abnormal access and transmission anomalies on the campus information sharing platform, and obtain security analysis results;
[0010] The result presentation module is used to present and provide feedback based on the safety analysis results.
[0011] Furthermore, when determining the target monitoring point, the matching association module includes:
[0012] Identify campus information sharing platforms that need to be monitored;
[0013] Make a matching request for the campus information sharing platform that needs to be monitored and obtain the campus information sharing platform information;
[0014] Analyze the campus information sharing platform architecture based on the campus information sharing platform information and determine the campus information sharing architecture;
[0015] The campus information sharing architecture is combined with the campus information sharing process to analyze data security and privacy protection needs, determine key information nodes, and obtain target monitoring points.
[0016] Furthermore, the monitoring and acquisition module includes: a monitoring and acquisition unit and a real-time transmission unit; after the monitoring and acquisition unit performs monitoring deployment on the target monitoring point, it monitors the campus information sharing platform and collects and obtains campus information sharing monitoring information; the real-time transmission unit monitors the monitoring and acquisition unit, and when the monitoring and acquisition unit obtains the campus information sharing monitoring information, it transmits the obtained campus information sharing monitoring information in real time.
[0017] Furthermore, the receiving and processing module includes: a data receiving unit and a preliminary processing unit;
[0018] The data receiving unit is used to receive campus information sharing monitoring information, and after receiving the campus information sharing monitoring information, perform integrity check on the campus information sharing monitoring information to obtain an integrity check result, and then issue a data transmission abnormality prompt based on the integrity check result;
[0019] The preliminary processing unit is used to perform preliminary data analysis on the campus information sharing monitoring information and determine the campus information sharing type.
[0020] Furthermore, the preliminary processing unit performs preliminary data analysis on the campus information sharing monitoring information, including:
[0021] Obtain campus information sharing platform information and determine the campus information sharing architecture based on the campus information sharing platform information;
[0022] Combined with the campus information sharing architecture, conduct information location and attribute analysis on campus information sharing monitoring information, understand the campus information sharing process, and determine the campus information sharing type;
[0023] According to the campus information sharing architecture and the campus information sharing process, the campus information sharing monitoring information is disassembled and divided to obtain a first divided data set and a second divided data set;
[0024] Determining campus information sharing monitoring information blocks for the first divided data set to obtain a first classification result;
[0025] The campus information sharing monitoring information blocks are determined for the second divided data set, and the campus information sharing monitoring information blocks are associated and combined in combination with the campus information sharing type to determine the second classification result.
[0026] Furthermore, the security analysis module includes: a target matching unit and a security analysis unit; the target matching unit is used to determine the target intelligent analysis model according to the campus information sharing type; the security analysis unit is used to use the target intelligent analysis model to perform security analysis on the corresponding campus information sharing monitoring information, determine whether there are abnormal access phenomena and transmission abnormalities on the campus information sharing platform, and obtain security analysis results; wherein, when the target matching unit determines the intelligent analysis model according to the campus information sharing type, the intelligent analysis model is matched and determined according to the first classification result and the second classification result respectively to obtain the target intelligent analysis model.
[0027] Furthermore, the security analysis unit uses a target intelligent analysis model to perform security analysis on the corresponding campus information sharing monitoring information, including:
[0028] According to the target intelligent analysis model, the target information of the campus information sharing monitoring information is identified and screened to obtain the target campus information sharing monitoring information block;
[0029] Use the target intelligent analysis model to conduct security analysis on the corresponding target campus information sharing monitoring information block to determine whether there is abnormal access or transmission abnormality on the campus information sharing platform, and obtain the security analysis sub-result;
[0030] Conduct comprehensive analysis on the safety analysis sub-results to determine the safety analysis results.
[0031] Furthermore, the security analysis unit also performs risk prediction for the campus information sharing platform, including:
[0032] Conduct security defense analysis on the campus information sharing platform and determine the current defense information of the campus information sharing platform;
[0033] Analyze and extract the key features of the campus information sharing platform based on the campus information sharing monitoring information to obtain the key features of the campus information sharing platform;
[0034] The key features of the campus information sharing platform are combined with the current defense information to evaluate and predict the security situation of the campus information sharing platform, and the security situation analysis data of the campus information sharing platform is obtained;
[0035] Make risk warnings based on security situation analysis data from the campus information sharing platform.
[0036] Furthermore, the result presentation module includes: a presentation unit, an alarm unit and a feedback unit;
[0037] The presentation unit is configured to determine presentation information by combining the security analysis result with the security analysis data, and to display the determined presentation information;
[0038] The alarm unit is used to issue an alarm prompt based on the safety analysis result;
[0039] The feedback unit is used to locate potential safety hazards according to the security analysis results, and to provide interception feedback according to the potential safety hazard location results.
[0040] A campus information sharing security monitoring method, comprising:
[0041] Obtain information from the campus information sharing platform, analyze its characteristics, and determine target monitoring points.
[0042] Deploy monitoring at target monitoring points, obtain campus information sharing monitoring information from the campus information sharing platform, and wirelessly transmit the campus information sharing monitoring information;
[0043] Receive campus information sharing monitoring information, conduct preliminary data analysis on the campus information sharing monitoring information, and determine the type of campus information sharing;
[0044] Determine the target intelligent analysis model according to the campus information sharing type, and use the target intelligent analysis model to conduct security analysis on the corresponding campus information sharing monitoring information to determine whether there are abnormal access and transmission anomalies on the campus information sharing platform, and obtain security analysis results;
[0045] Present and provide feedback based on the safety analysis results.
[0046] The present invention realizes the matching of the campus information sharing security monitoring integrated machine and the campus information sharing platform through the matching association module, so that the campus information sharing security monitoring integrated machine can adapt to the campus information sharing platform in any situation, improves the applicability flexibility of the campus information sharing security monitoring integrated machine, can more comprehensively perform security monitoring on the campus information sharing platform, and ensure the performance of the campus information sharing security monitoring integrated machine. Moreover, by combining the receiving processing module and the security analysis module with the campus information sharing type and adopting the target intelligent analysis model for security analysis, not only the efficiency of security analysis is improved, the security analysis results are determined in a relatively short time, and time delay is reduced, so that measures can be taken in time according to the security analysis results for the campus information sharing platform to ensure the campus information security of the campus information sharing platform, but also the accuracy of the security analysis is guaranteed, the accuracy of the security analysis results is improved, and the accuracy of the campus information sharing security monitoring integrated machine is guaranteed, so that relevant personnel can more accurately take measures according to the security analysis results for the campus information sharing platform to ensure the campus information security of the campus information sharing platform.
[0047] Other features and advantages of the present invention will be described in the following description, and in part will become apparent from the description, or will be understood by practicing the present invention. The purpose and other advantages of the present invention can be realized and obtained through the structures specifically pointed out in the application documents.
[0048] The technical solution of the present invention is further described in detail below through the accompanying drawings and embodiments. BRIEF DESCRIPTION OF THE DRAWINGS
[0049] The accompanying drawings are used to provide a further understanding of the present invention and constitute a part of the specification. Together with the embodiments of the present invention, they are used to explain the present invention and do not constitute a limitation of the present invention. In the accompanying drawings:
[0050] Figure 1 Schematic diagram of the campus information sharing security monitoring all-in-one machine according to the present invention;
[0051] Figure 2This is a schematic diagram of the steps for matching association modules in the campus information sharing security monitoring integrated machine of the present invention;
[0052] Figure 3 This is a schematic diagram of the steps of the preliminary processing unit of the receiving and processing module in the campus information sharing and security monitoring integrated machine of the present invention;
[0053] Figure 4 This is a schematic diagram of the steps of the security analysis unit of the security analysis module in the campus information sharing security monitoring integrated machine of the present invention;
[0054] Figure 5 Schematic diagram of the steps of the security monitoring method according to the present invention. DETAILED DESCRIPTION
[0055] The preferred embodiments of the present invention are described below with reference to the accompanying drawings. It should be understood that the preferred embodiments described herein are only used to illustrate and explain the present invention, and are not used to limit the present invention.
[0056] like Figure 1 As shown, the embodiment of the present invention provides a campus information sharing security monitoring integrated machine, including: a matching association module, a monitoring acquisition module, a receiving and processing module, a security analysis module and a result presentation module;
[0057] The matching association module is used to obtain campus information sharing platform information, and perform campus information sharing feature analysis on the campus information sharing platform to determine the target monitoring point;
[0058] The monitoring acquisition module is used to perform monitoring deployment on target monitoring points, obtain campus information sharing monitoring information from the campus information sharing platform, and wirelessly transmit the campus information sharing monitoring information;
[0059] The receiving and processing module is used to receive campus information sharing monitoring information, and perform preliminary data analysis on the campus information sharing monitoring information to determine the campus information sharing type;
[0060] The security analysis module is used to determine the target intelligent analysis model according to the campus information sharing type, and use the target intelligent analysis model to perform security analysis on the corresponding campus information sharing monitoring information, to determine whether there is abnormal access and transmission abnormality on the campus information sharing platform, and to obtain security analysis results;
[0061] The result presentation module is used to present and provide feedback based on the safety analysis results.
[0062] In the above technical solution, when monitoring is deployed at the target monitoring point, the monitoring and collection device is configured in combination with the role of the target monitoring point in the campus information sharing platform, the target monitoring and collection device is determined, and then the target monitoring and collection device is deployed to the target monitoring point to perform real-time monitoring of the campus information sharing platform.
[0063] In the above technical solution, when the campus information sharing monitoring information is wirelessly transmitted, the obtained campus information sharing monitoring information is transmitted in real time.
[0064] In the above technical solution, campus information sharing types include: cloud service information sharing, network information sharing, hardware equipment information sharing, interface data information sharing, etc.
[0065] In the above technical solution, abnormal access phenomenon refers to abnormal access to cloud services or databases in the campus information sharing platform, or excessive collection of data information other than target information when accessing cloud services or databases; abnormal transmission phenomenon refers to the loss or tampering of transmission information and abnormal communication network or interface in the campus information sharing platform.
[0066] In the above technical solution, the intelligent analysis model includes: a fixed-point analysis model and a process analysis model. Among them, the fixed-point analysis model performs security analysis on the monitoring information of a single target monitoring point, and the process analysis model performs security analysis based on the monitoring information of multiple target monitoring points.
[0067] The above technical solution enables monitoring of the campus information sharing platform, ensuring campus information sharing through the campus information sharing security monitoring all-in-one device, thereby improving campus information security. By matching the association module, the campus information sharing security monitoring all-in-one device is matched with the campus information sharing platform, allowing the all-in-one device to adapt to the campus information sharing platform in any situation, improving its applicability and flexibility, enabling more comprehensive security monitoring of the campus information sharing platform, and ensuring the performance of the all-in-one device. Through the monitoring and acquisition module, real-time and comprehensive monitoring of the campus information sharing platform is achieved, so that the security risks of the campus information sharing platform can be discovered in time and the information security of the campus information sharing platform is guaranteed. In addition, the receiving and processing module is combined to realize the coordinated processing of data collection and data analysis, and the campus information sharing monitoring information is transferred and processed in time to avoid the data processing of the campus information sharing monitoring information affecting the monitoring and acquisition of the campus information sharing platform. At the same time, the receiving and processing module and the security analysis module are combined with the campus information sharing type to adopt the target intelligent analysis model for security analysis, which not only improves the efficiency of security analysis, but also determines the security analysis results in a shorter time and reduces time delay, so that measures can be taken according to the security analysis results for the campus information sharing platform in time to ensure the campus information security of the campus information sharing platform. It can also ensure the accuracy of security analysis and improve the accuracy of security analysis results, thereby ensuring the accuracy of campus information sharing security monitoring all-in-one machine, so that relevant personnel can take measures according to the security analysis results for the campus information sharing platform more accurately to ensure the campus information security of the campus information sharing platform. In addition, the result presentation module can more intuitively present and feedback the security analysis results, so that relevant personnel can clearly know the security monitoring status of the campus information sharing platform in a timely manner.
[0068] like Figure 2 As shown, in one embodiment provided by the present invention, when determining the target monitoring point, the matching association module includes:
[0069] A1. Identify the campus information sharing platform that needs to be monitored;
[0070] A2. Make a matching request for the campus information sharing platform that needs to be monitored and obtain information about the campus information sharing platform;
[0071] A3. Analyze the campus information sharing platform architecture based on the information of the campus information sharing platform and determine the campus information sharing architecture;
[0072] A4. Combine the campus information sharing architecture with the campus information sharing process to analyze data security and privacy protection needs, identify key information nodes, and obtain target monitoring points.
[0073] In the above technical solution, the campus information sharing architecture is combined with the campus information sharing process to analyze data security and privacy protection needs. According to the campus information sharing type, cloud service information sharing, network information sharing, hardware equipment information sharing, interface data information sharing and other analyses are carried out in turn to determine the key information nodes for data security and privacy protection, and the key information nodes are used as target monitoring points.
[0074] The above technical solution determines the target monitoring points according to the campus information sharing characteristics of the campus information sharing platform through matching association modules, so that the overview of the campus information sharing platform can be monitored, the adaptability of the campus information sharing security monitoring all-in-one machine to the campus information sharing platform can be improved, and the campus information sharing security monitoring all-in-one machine can better monitor the campus information sharing platform, ensure the data security and privacy protection of the campus information sharing platform, and improve the comprehensiveness and accuracy of security analysis.
[0075] In one embodiment provided by the present invention, the monitoring and acquisition module includes: a monitoring and acquisition unit and a real-time transmission unit; after the monitoring and acquisition unit performs monitoring deployment on the target monitoring point, it monitors the campus information sharing platform and collects and obtains campus information sharing monitoring information; the real-time transmission unit monitors the monitoring and acquisition unit, and when the monitoring and acquisition unit obtains the campus information sharing monitoring information, it transmits the obtained campus information sharing monitoring information in real time.
[0076] In the above technical solution, the real-time transmission unit performs real-time monitoring on the monitoring and acquisition unit.
[0077] In the above technical solution, the real-time transmission unit performs real-time transmission of the campus information sharing monitoring information without affecting the monitoring collection unit's collection and acquisition of the campus information sharing monitoring information.
[0078] The monitoring and acquisition module of the above-mentioned technical solution acquires monitoring information from the campus information sharing platform, thereby enabling security analysis based on the campus information sharing monitoring information, timely identifying security risks of the campus information sharing platform, and ensuring the security of campus information. The monitoring and acquisition unit enables comprehensive monitoring of the campus information sharing platform, ensuring a high degree of correspondence between the campus information sharing monitoring information and the campus information sharing platform, and improving the comprehensiveness of the security analysis. Furthermore, the real-time transmission unit enables timely transfer and data processing of the campus information sharing monitoring information obtained by the monitoring and acquisition unit, reducing the delay in security analysis and enabling timely security analysis results based on the campus information sharing monitoring information.
[0079] In one embodiment provided by the present invention, the receiving and processing module includes: a data receiving unit and a preliminary processing unit;
[0080] The data receiving unit is used to receive campus information sharing monitoring information, and after receiving the campus information sharing monitoring information, perform integrity check on the campus information sharing monitoring information to obtain an integrity check result, and then issue a data transmission abnormality prompt based on the integrity check result;
[0081] The preliminary processing unit is used to perform preliminary data analysis on the campus information sharing monitoring information and determine the campus information sharing type.
[0082] In the above technical solution, the data receiving unit corresponds to the monitoring and acquisition module, and receives the campus information sharing monitoring information transmitted by the monitoring and acquisition module.
[0083] In the above technical solution, when the data receiving unit performs integrity check on the campus information sharing monitoring information, it determines whether the current campus information sharing monitoring information contains all the information of the campus information sharing platform, thereby obtaining the integrity check result.
[0084] In the above technical solution, when a data reception abnormality prompt is given based on the integrity check result, when the integrity check result is that the current campus information sharing monitoring information includes all the information of the campus information sharing platform, the integrity check result is passed; when the integrity check result is that the current campus information sharing monitoring information does not include all the information of the campus information sharing platform, the integrity check result is failed. At this time, a data transmission abnormality prompt is given for the campus information sharing monitoring information.
[0085] The above technical solution realizes wireless connection with the monitoring and acquisition module through the receiving and processing module, completes the transfer and data processing of the campus information sharing monitoring information obtained by the monitoring and acquisition module, ensures that the monitoring and acquisition module performs monitoring while providing convenience for the security analysis of the campus information sharing monitoring information, and through the data receiving unit, it can not only effectively receive the campus information sharing monitoring information transmitted by the monitoring and acquisition module, but also timely detect the abnormality of information transmission, so that when the information transmission is abnormal, the vigilance of the relevant personnel is increased through the transmission abnormality prompt, so that the relevant personnel can solve the information transmission abnormality in time, reduce the impact of the information transmission abnormality on the campus information sharing security monitoring all-in-one machine, ensure that the campus information sharing monitoring information for security analysis is complete, and provide protection for the security analysis results.
[0086] like Figure 3 As shown, in one embodiment provided by the present invention, the preliminary processing unit performs preliminary data analysis on campus information sharing monitoring information, including:
[0087] B1. Obtain information about the campus information sharing platform and determine the campus information sharing architecture based on the information from the campus information sharing platform;
[0088] B2. Conduct information location and attribute analysis on campus information sharing monitoring information based on the campus information sharing architecture, understand the campus information sharing process, and determine the campus information sharing type;
[0089] B3. Decomposing and dividing the campus information sharing monitoring information according to the campus information sharing architecture and the campus information sharing process to obtain a first divided data set and a second divided data set;
[0090] B4. Determine the campus information sharing monitoring information block for the first divided data set to obtain a first classification result;
[0091] B5. Determine the campus information sharing monitoring information blocks for the second divided data set, and associate and combine the campus information sharing monitoring information blocks in combination with the campus information sharing type to determine a second classification result.
[0092] In the above technical solution, when obtaining the campus information sharing platform information and determining the campus information sharing architecture based on the campus information sharing platform information, the campus information sharing architecture can be determined based on the campus information sharing platform information, or the target data can be directly retrieved from the matching association module to obtain the campus information sharing architecture.
[0093] In the above technical solution, campus information sharing types include: cloud service information sharing, network information sharing, hardware equipment information sharing, interface data information sharing, etc.
[0094] In the above technical solution, when understanding the campus information sharing process and determining the campus information sharing type, the campus information sharing currently being conducted in the campus information sharing platform is analyzed to clarify the current campus information sharing process and determine the campus information sharing type.
[0095] In the above technical solution, when the campus information sharing monitoring information is disassembled and divided according to the campus information sharing architecture and the campus information sharing process, the campus information sharing monitoring information is disassembled into information blocks according to the campus information sharing architecture, and the campus information sharing monitoring information corresponding to each monitoring point is regarded as a campus information sharing monitoring information block, and then divided in combination with the campus information sharing process, and the campus information sharing monitoring information block related to the campus information sharing process is used as the information element in the second divided data set, and the campus information sharing monitoring information block not related to the campus information sharing process is used as the information element in the first divided data set.
[0096] In the above technical solution, when determining the campus information sharing monitoring information block for the first divided data set, it is checked in combination with the campus information sharing architecture to determine whether the campus information sharing monitoring information block has any disassembly and division errors. If the campus information sharing monitoring information block does not have any disassembly and division errors, the first division result is the first classification result. If the campus information sharing monitoring information block has any disassembly and division errors, it is corrected and then the corrected first division result is used as the first classification result.
[0097] In the above technical solution, when determining the campus information sharing monitoring information block for the second divided data set, it is checked in combination with the campus information sharing architecture to determine whether the campus information sharing monitoring information block has disassembly and division errors. If the campus information sharing monitoring information block has disassembly and division errors, it is corrected, and then the campus information sharing monitoring information blocks are associated and combined based on the corrected second division result and the campus information sharing type. If the campus information sharing monitoring information block does not have disassembly and division errors, the campus information sharing monitoring information blocks are directly associated and combined based on the second division result and the campus information sharing type. Moreover, when associating and combining the campus information sharing monitoring information blocks in combination with the campus information sharing type, the properties of the campus information sharing monitoring information blocks are analyzed to determine the properties of the campus information sharing monitoring information blocks, and then the campus information sharing monitoring information blocks are combined in combination with the campus information sharing type, for example: cloud monitoring information is combined with cloud service access monitoring information, communication network monitoring information is combined with transmission data monitoring information and reception data monitoring information, and so on.
[0098] The above technical solution realizes preliminary processing of campus information sharing monitoring information through the preliminary processing unit, provides convenience for the security analysis of campus information sharing monitoring information, and enables the security analysis module to use the target intelligent analysis model to perform security analysis in combination with the campus information sharing type, thereby improving the efficiency and accuracy of security analysis and ensuring the accuracy of the campus information sharing security monitoring all-in-one machine. By disassembling and dividing the campus information sharing monitoring information according to the campus information sharing architecture and the campus information sharing process, security analysis is performed according to the campus information sharing monitoring information blocks, providing convenience for the security analysis module to perform security analysis, and after obtaining the first divided data set and the second divided data set, the campus information sharing monitoring information blocks are determined respectively to ensure the accuracy of the first classification result and the second classification result, thereby ensuring the accuracy of the security analysis results.
[0099] In one embodiment provided by the present invention, the security analysis module includes: a target matching unit and a security analysis unit; the target matching unit is used to determine a target intelligent analysis model according to the campus information sharing type; the security analysis unit is used to use the target intelligent analysis model to perform security analysis on the corresponding campus information sharing monitoring information, determine whether there are abnormal access phenomena and transmission abnormalities on the campus information sharing platform, and obtain security analysis results; wherein, when the target matching unit determines the intelligent analysis model according to the campus information sharing type, the intelligent analysis model is matched and determined according to the first classification result and the second classification result respectively to obtain the target intelligent analysis model.
[0100] In the above technical solution, when the target matching unit matches and determines the intelligent analysis model according to the first classification result and the second classification result, the information element in the first divided data set and the information element in the second divided data set in the first classification result and the second classification result respectively perform information block or information combination attribute and feature analysis, determine the information element attribute and information element feature, determine the target analysis model library according to the information element attribute, and match the analysis model in the target analysis model library in combination with the information element feature, the target intelligent analysis model, and then adjust the target analysis model according to the division result corresponding to the information element. When the information element is an information block or information combination in the first classification result, the target intelligent analysis model is deleted and adjusted, and the intelligent analysis method based on the static data standard is retained to obtain the final target intelligent analysis model. When the information element is an information block or information combination in the second classification result, the target intelligent analysis model is deleted and adjusted, and the intelligent analysis method based on the dynamic data standard is retained to obtain the final target intelligent analysis model. Among them, the information element attributes are information of fixed point nature and information of process nature respectively. The model analysis library is divided into a fixed-point analysis model library and a process analysis model library, including cloud service security analysis models, network security analysis models, hardware device security analysis models, communication connection security analysis models, shared process security analysis models, database security analysis models, interface security analysis models, and more. Intelligent analysis models include intelligent analysis methods based on static data standards and intelligent analysis methods based on dynamic data standards.
[0101] The above technical solution realizes security analysis of campus information sharing monitoring information through the security analysis module, timely discovers security risks of the campus information sharing platform, thereby reducing the adverse effects of security risks on the campus information sharing platform and ensuring the security of the campus information sharing platform. In addition, the target matching unit matches and determines the intelligent analysis model according to the first classification results and the second classification results respectively, so that the target intelligent analysis model can be appropriately adjusted according to the corresponding situation of the campus information sharing type, so that the target intelligent analysis model is more adapted to the campus information sharing monitoring information, which not only improves the flexibility of the target intelligent analysis model, but also ensures the efficiency and accuracy of the target intelligent analysis model in security analysis.
[0102] like Figure 4 As shown, in one embodiment provided by the present invention, the security analysis unit uses a target intelligent analysis model to perform security analysis on the corresponding campus information sharing monitoring information, including:
[0103] C1. Identify and filter the target information of the campus information sharing monitoring information based on the target intelligent analysis model to obtain the target campus information sharing monitoring information block;
[0104] C2. Use the target intelligent analysis model to perform security analysis on the corresponding target campus information sharing monitoring information block to determine whether there is abnormal access or transmission abnormality on the campus information sharing platform, and obtain the security analysis sub-result;
[0105] C3. Conduct a comprehensive analysis of the safety analysis sub-results to determine the safety analysis results.
[0106] In the above technical solution, when the target intelligent analysis model is used to perform security analysis on the corresponding target campus information sharing monitoring information block, the affiliation classification result of the target campus information sharing monitoring information block and the model type of the target intelligent analysis model are determined, and the security analysis is performed on the corresponding target campus information sharing monitoring information block according to the target intelligent analysis model in combination with the affiliation classification result and the model type. When the target intelligent analysis model is a fixed-point analysis model and the target campus information sharing monitoring information block belongs to the second classification result, an information change analysis is performed on the target campus information sharing monitoring information block to determine the specification standard of the corresponding position of the monitoring point in the campus information sharing platform, and obtain the target analysis specification standard. Then, whether the information change of the target campus information sharing monitoring information block meets the target analysis specification standard is analyzed. If the information change meets the target analysis specification standard, the security analysis sub-result is that there is no security risk. Otherwise, the security analysis sub-result is that there is a security risk. When the target intelligent analysis model is a fixed-point analysis model and the target campus information sharing monitoring information block belongs to the first classification result, the target campus information sharing monitoring information block is analyzed. An analysis is conducted to determine whether there is any information change at the corresponding position of the monitoring point in the campus information sharing platform. If there is any information change, the security analysis sub-result is that there is a security risk; otherwise, the security analysis sub-result is that there is no security risk; when the target intelligent analysis model is a process analysis model and the target campus information sharing monitoring information block belongs to the first classification result, the target campus information sharing monitoring information block is analyzed to determine whether there is any information tampering or information access. If so, the security analysis sub-result is that there is a security risk; otherwise, the security analysis sub-result is that there is no security risk; when the target intelligent analysis model is a process analysis model and the target campus information sharing monitoring information block belongs to the second classification result, the target campus information sharing monitoring information block is analyzed to determine whether it is a normal process. If it is not a normal process, the security analysis sub-result is that there is a security risk. Otherwise, the target campus information sharing monitoring information block is further analyzed to determine whether there is any excessive information access or abnormal information transmission. If there is any excessive information access or abnormal information transmission, the security analysis sub-result is that there is a security risk; otherwise, the security analysis sub-result is that there is no security risk.
[0107] In the above technical solution, when performing comprehensive analysis on the safety analysis sub-results, if all the safety analysis sub-results show no abnormal phenomena, then the safety analysis result is that there is no safety hazard; otherwise, the safety analysis result is that there is a safety hazard.
[0108] In the above technical solution, when the target intelligent analysis model is used to perform security analysis on the corresponding target campus information sharing monitoring information block, security analysis can be performed simultaneously on different target campus information sharing monitoring information blocks.
[0109] The above technical solution realizes intelligent security analysis of campus information sharing monitoring information through the security analysis unit with the help of the target intelligent analysis method, which not only improves the efficiency of security analysis, reduces the time consumption of security analysis, thereby reducing time delay, but also ensures the accuracy of security analysis. Moreover, when using the target intelligent analysis model to perform security analysis on the corresponding target campus information sharing monitoring information block, different intelligent analysis models are used to perform security analysis on the campus information sharing monitoring information, so that the characteristics of the campus information sharing monitoring information in the campus information sharing can be combined to adopt appropriate security analysis methods to determine security risks. Not only can multiple target campus information sharing monitoring information blocks be performed simultaneously, improving the efficiency of security analysis, obtaining security analysis results in a shorter time, reducing time delay, but also ensuring the effectiveness of security analysis, making it possible to perform more accurate security analysis on the target campus information sharing monitoring information block, ensuring the accuracy of the security analysis sub-results, thereby improving the accuracy of the security analysis results and ensuring the accuracy of the campus information sharing security monitoring all-in-one machine.
[0110] In one embodiment provided by the present invention, the security analysis unit further performs risk prediction for the campus information sharing platform, including:
[0111] Conduct security defense analysis on the campus information sharing platform and determine the current defense information of the campus information sharing platform;
[0112] Analyze and extract the key features of the campus information sharing platform based on the campus information sharing monitoring information to obtain the key features of the campus information sharing platform;
[0113] The key features of the campus information sharing platform are combined with the current defense information to evaluate and predict the security situation of the campus information sharing platform, and the security situation analysis data of the campus information sharing platform is obtained;
[0114] Make risk warnings based on security situation analysis data from the campus information sharing platform.
[0115] In the above technical solution, the key features of the campus information sharing platform include: traffic anomalies, error information in logs, etc.
[0116] In the above technical solution, the security situation analysis data of the campus information sharing platform includes: security situation assessment data and security situation prediction data.
[0117] In the above technical solution, when the key features of the campus information sharing platform are combined with the current defense information to evaluate and predict the security situation of the campus information sharing platform, a security situation assessment model is constructed based on machine learning or statistical analysis methods, and the security situation assessment model is used in combination with the current defense information to perform security performance evaluation calculations in the current state to obtain security situation assessment data. At the same time, based on the current defense information and the campus information sharing process of the campus information sharing platform, security performance prediction is performed to obtain security situation prediction data.
[0118] In the above technical solution, when performing risk warning based on the security situation analysis data of the campus information sharing platform, risk warning analysis is performed on the security situation assessment data and the security situation prediction data respectively to determine whether the security situation assessment data meets the first risk warning standard. When the security situation assessment data meets the first risk warning standard, a risk warning is performed. At the same time, it is determined whether the security situation prediction data meets the second risk warning standard. When the security situation prediction data meets the second risk warning standard, a risk warning is performed. The first risk warning standard and the second risk warning standard are different standards. For example, the first risk warning standard is (∞, a], and the second risk warning standard is (∞, b].
[0119] The above-mentioned technical solution predicts risks for the campus information sharing platform, so that risk warnings can be issued when the security defense of the campus information sharing platform is poor, so that relevant personnel can promptly enhance or remedy the current defense situation of the campus information sharing platform, improve the security performance of the campus information sharing platform, avoid the campus information sharing platform from being attacked and causing information leakage of the campus information sharing platform, and ensure the campus information security of the campus information sharing platform.
[0120] In one embodiment provided by the present invention, the result presentation module includes: a presentation unit, an alarm unit and a feedback unit;
[0121] The presentation unit is configured to determine presentation information by combining the security analysis result with the security analysis data, and to display the determined presentation information;
[0122] The alarm unit is used to issue an alarm prompt based on the safety analysis result;
[0123] The feedback unit is used to locate potential safety hazards according to the security analysis results, and to provide interception feedback according to the potential safety hazard location results.
[0124] In the above technical solution, when the presentation unit combines the security analysis results with the security analysis data to determine the presentation information, it obtains the security analysis data, and combines the security analysis data with the campus information sharing monitoring information to perform data statistics to obtain the campus information sharing security monitoring statistical information, and then highlights the campus information sharing security monitoring statistical information based on the security analysis results. When the security analysis result shows that there is a security risk, the campus information sharing security monitoring statistical information corresponding to the security risk is locked and highlighted to obtain the first display information. The first display information is combined with the security analysis result to determine the second display information to obtain the presentation information.
[0125] In the above technical solution, based on the same security analysis result, if the security analysis result shows that there is a security risk, the presentation unit combines the security analysis result with the security analysis data to determine the presentation information, and displays the determined presentation information. At the same time, the alarm unit issues an alarm prompt and the feedback unit intercepts and provides feedback.
[0126] In the above technical solution, when the alarm unit issues an alarm prompt based on the safety analysis result, if the safety analysis result indicates that there is a safety hazard, an alarm prompt is issued; otherwise, no alarm prompt is required.
[0127] In the above technical solution, when the feedback unit locates the safety hazard according to the security analysis result, if the security analysis result is that there is no safety hazard, the safety hazard is located and interception feedback is performed; if the security analysis result is that there is a safety hazard, the security analysis data is retrieved from the security analysis module to obtain the safety analysis data; the cause of the safety hazard is determined according to the security analysis data, and the campus information sharing monitoring information is tracked based on the cause of the safety hazard, the corresponding campus information sharing monitoring information is determined, and the target campus information sharing monitoring information is obtained; the corresponding monitoring point is further locked according to the target campus information sharing monitoring information, and the safety hazard monitoring point is determined; an emergency interception signal is generated for the safety hazard monitoring point, and the emergency interception signal is fed back to the safety hazard monitoring point, so that the emergency interception signal is transmitted to the campus information sharing platform through the monitoring point, so that the campus information sharing platform stops the corresponding campus information sharing process according to the transmitted emergency interception signal.
[0128] The above technical solution uses the result presentation module to more intuitively present and feedback the security analysis results, so that relevant personnel can more easily understand the overview of the campus information sharing platform, promptly deal with the security risks of the campus information sharing platform, reduce the adverse effects of the security risks, and ensure the information security of the campus information sharing platform. The presentation unit can effectively present the security analysis results and security analysis data regardless of the security analysis results, providing convenience for relevant personnel to understand the overview of the campus information sharing platform. At the same time, the alarm unit can promptly issue an alarm when the security analysis results indicate that there are security risks, thereby increasing the vigilance of relevant personnel and enabling them to resolve the security risks as soon as possible, reducing the impact of the security risks. The feedback unit connects the campus information sharing security monitoring all-in-one machine with the campus information sharing platform, so that when the security analysis results indicate that there are security risks, timely feedback can be sent to the campus information sharing platform to stop them, reducing the adverse effects of the security risks, and ensuring the information security of the campus information sharing platform.
[0129] like Figure 5 As shown, an embodiment of the present invention provides a security monitoring method, including:
[0130] Step 1: Obtain information from the campus information sharing platform, analyze the campus information sharing characteristics of the platform, and determine the target monitoring points;
[0131] Step 2: Deploy monitoring at the target monitoring point, obtain campus information sharing monitoring information from the campus information sharing platform, and wirelessly transmit the campus information sharing monitoring information;
[0132] Step 3: Receive campus information sharing monitoring information, perform preliminary data analysis on the campus information sharing monitoring information, and determine the campus information sharing type;
[0133] Step 4: Determine the target intelligent analysis model based on the campus information sharing type, and use the target intelligent analysis model to perform security analysis on the corresponding campus information sharing monitoring information to determine whether there are abnormal access and transmission anomalies on the campus information sharing platform, and obtain security analysis results;
[0134] Step 5: Present and provide feedback based on the safety analysis results.
[0135] The security monitoring method described in the above technical solution corresponds to a campus information sharing security monitoring all-in-one machine, which enables monitoring of the campus information sharing platform, ensures the implementation of campus information sharing, and improves the security of campus information. By obtaining information from the campus information sharing platform, the target monitoring point is adapted to the campus information sharing platform, improving the flexibility of campus information sharing security monitoring, and enabling the campus information sharing platform to appropriately adjust monitoring for any situation, thereby more comprehensively obtaining campus information sharing monitoring information, ensuring the accuracy of campus information sharing monitoring information, and further improving the accuracy of security analysis results, so that security risks of the campus information sharing platform can be discovered in a timely manner, and the information security of the campus information sharing platform can be guaranteed. Moreover, the use of target intelligent analysis models for security analysis in combination with the campus information sharing type not only improves the efficiency of security analysis, determines the security analysis results in a shorter time, reduces time delays, and allows timely measures to be taken for the campus information sharing platform based on the security analysis results to ensure the campus information security of the campus information sharing platform, but also ensures the accuracy of security analysis, improves the accuracy of security analysis results, and thus ensures the accuracy of the campus information sharing security monitoring all-in-one machine, so that relevant personnel can more accurately take measures for the campus information sharing platform based on the security analysis results to ensure the campus information security of the campus information sharing platform, and by presenting and feeding back the results according to the security analysis results, the security analysis results can be more intuitively fed back to relevant personnel, so that relevant personnel can clearly and timely know the security monitoring status of the campus information sharing platform.
[0136] Those skilled in the art should understand that the first and second in the present invention merely refer to different application stages.
[0137] Other embodiments of the present disclosure will readily occur to those skilled in the art after considering the specification and practicing the disclosure herein. This application is intended to cover any variations, uses, or adaptations of the present disclosure that follow from the general principles of the present disclosure and include common knowledge or customary techniques in the art not disclosed herein. The description and examples are to be considered as exemplary only, with the true scope and spirit of the present disclosure being indicated by the following claims.
[0138] It should be understood that the present disclosure is not limited to the exact structures that have been described above and shown in the drawings, and that various modifications and changes can be made without departing from the scope thereof. The scope of the present disclosure is limited only by the appended claims.
Claims
1. A campus information sharing and security monitoring integrated machine, characterized in that: include: The matching association module is used to obtain information from the campus information sharing platform, analyze the campus information sharing characteristics of the campus information sharing platform, and determine the target monitoring points; The monitoring and acquisition module is used to deploy monitoring at target monitoring points, obtain campus information sharing monitoring information from the campus information sharing platform, and wirelessly transmit the campus information sharing monitoring information; A receiving and processing module is used to receive campus information sharing monitoring information, perform preliminary data analysis on the campus information sharing monitoring information, and determine the campus information sharing type; The security analysis module is used to determine the target intelligent analysis model according to the campus information sharing type, and use the target intelligent analysis model to perform security analysis on the corresponding campus information sharing monitoring information to determine whether there are abnormal access and transmission anomalies on the campus information sharing platform, and obtain security analysis results; The result presentation module is used to present and provide feedback based on the safety analysis results.
2. The campus information sharing security monitoring integrated machine according to claim 1 is characterized in that: When determining the target monitoring point, the matching association module includes: Identify campus information sharing platforms that need to be monitored; Make a matching request for the campus information sharing platform that needs to be monitored and obtain the campus information sharing platform information; Analyze the campus information sharing platform architecture based on the campus information sharing platform information and determine the campus information sharing architecture; The campus information sharing architecture is combined with the campus information sharing process to analyze data security and privacy protection needs, determine key information nodes, and obtain target monitoring points.
3. The campus information sharing and security monitoring integrated machine according to claim 1 is characterized in that: The monitoring and acquisition module includes: a monitoring and acquisition unit and a real-time transmission unit; after the monitoring and acquisition unit performs monitoring deployment on the target monitoring point, it monitors the campus information sharing platform and collects and obtains campus information sharing monitoring information; the real-time transmission unit monitors the monitoring and acquisition unit, and when the monitoring and acquisition unit obtains the campus information sharing monitoring information, it transmits the obtained campus information sharing monitoring information in real time.
4. The campus information sharing and security monitoring integrated machine according to claim 3 is characterized in that: The receiving and processing module includes: a data receiving unit and a preliminary processing unit; The data receiving unit is used to receive campus information sharing monitoring information, and after receiving the campus information sharing monitoring information, perform integrity check on the campus information sharing monitoring information to obtain an integrity check result, and then issue a data transmission abnormality prompt based on the integrity check result; The preliminary processing unit is used to perform preliminary data analysis on the campus information sharing monitoring information and determine the campus information sharing type.
5. The campus information sharing and security monitoring integrated machine according to claim 4 is characterized in that: The preliminary processing unit performs preliminary data analysis on the campus information sharing monitoring information, including: Obtain campus information sharing platform information and determine the campus information sharing architecture based on the campus information sharing platform information; Combined with the campus information sharing architecture, conduct information location and attribute analysis on campus information sharing monitoring information, understand the campus information sharing process, and determine the campus information sharing type; According to the campus information sharing architecture and the campus information sharing process, the campus information sharing monitoring information is disassembled and divided to obtain a first divided data set and a second divided data set; Determining campus information sharing monitoring information blocks for the first divided data set to obtain a first classification result; The campus information sharing monitoring information blocks are determined for the second divided data set, and the campus information sharing monitoring information blocks are associated and combined in combination with the campus information sharing type to determine the second classification result.
6. The campus information sharing and security monitoring integrated machine according to claim 5 is characterized in that: The security analysis module includes: a target matching unit and a security analysis unit; the target matching unit is used to determine a target intelligent analysis model according to the campus information sharing type; the security analysis unit is used to use the target intelligent analysis model to perform security analysis on the corresponding campus information sharing monitoring information, determine whether there are abnormal access and transmission abnormalities on the campus information sharing platform, and obtain security analysis results; wherein, when the target matching unit determines the intelligent analysis model according to the campus information sharing type, the intelligent analysis model is matched and determined according to the first classification result and the second classification result respectively to obtain the target intelligent analysis model.
7. The campus information sharing and security monitoring integrated machine according to claim 6 is characterized in that: The security analysis unit uses a target intelligent analysis model to perform security analysis on the corresponding campus information sharing monitoring information, including: According to the target intelligent analysis model, the target information of the campus information sharing monitoring information is identified and screened to obtain the target campus information sharing monitoring information block; Use the target intelligent analysis model to conduct security analysis on the corresponding target campus information sharing monitoring information block to determine whether there is abnormal access or transmission abnormality on the campus information sharing platform, and obtain the security analysis sub-result; Conduct comprehensive analysis on the safety analysis sub-results to determine the safety analysis results.
8. The campus information sharing and security monitoring integrated machine according to claim 6 is characterized in that: The security analysis unit also conducts risk prediction for the campus information sharing platform, including: Conduct security defense analysis on the campus information sharing platform and determine the current defense information of the campus information sharing platform; Analyze and extract the key features of the campus information sharing platform based on the campus information sharing monitoring information to obtain the key features of the campus information sharing platform; The key features of the campus information sharing platform are combined with the current defense information to evaluate and predict the security situation of the campus information sharing platform, and the security situation analysis data of the campus information sharing platform is obtained; Make risk warnings based on security situation analysis data from the campus information sharing platform.
9. The campus information sharing and security monitoring integrated machine according to claim 1 is characterized in that: The result presentation module includes: a presentation unit, an alarm unit and a feedback unit; The presentation unit is configured to determine presentation information by combining the security analysis result with the security analysis data, and to display the determined presentation information; The alarm unit is used to issue an alarm prompt based on the safety analysis result; The feedback unit is used to locate potential safety hazards according to the security analysis results, and to provide interception feedback according to the potential safety hazard location results.
10. A campus information sharing security monitoring method, characterized in that: include: Obtain information from the campus information sharing platform, analyze its characteristics, and determine target monitoring points. Deploy monitoring at target monitoring points, obtain campus information sharing monitoring information from the campus information sharing platform, and wirelessly transmit the campus information sharing monitoring information; Receive campus information sharing monitoring information, conduct preliminary data analysis on the campus information sharing monitoring information, and determine the type of campus information sharing; Determine the target intelligent analysis model according to the campus information sharing type, and use the target intelligent analysis model to conduct security analysis on the corresponding campus information sharing monitoring information to determine whether there are abnormal access and transmission anomalies on the campus information sharing platform, and obtain security analysis results; Present and provide feedback based on the safety analysis results.
Citation Information
Patent Citations
Intelligent campus safety situation awareness system
CN111260314A
Intelligent campus management system based on big data
CN116797421A
Smart campus data monitoring application system based on Internet of Things
CN117670239A
Campus access safety supervision system based on smart campus
CN118984244A
Campus security system based on Internet of Things and service terminal thereof
CN119832673A