Network security analysis method and device and storage medium
By deeply integrating threat intelligence from multiple external channels with intelligent correlation analysis of local situations, the problem of firewalls' single integration dimension and weak correlation analysis capabilities in threat intelligence utilization is solved, achieving high-precision threat detection and adaptive defense, and providing a more insightful security situation view.
Patent Information
- Application Number
- CN202510688718.2
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- Filing Date
- 2025-05-26
- Publication Date
- 2025-09-19
AI Technical Summary
Existing firewalls have problems in integrating and utilizing threat intelligence, such as a single integration dimension, weak correlation analysis capabilities, lack of local context awareness, and low intelligence level, resulting in a high false alarm rate and an inability to accurately assess real risks.
By acquiring and pre-processing threat intelligence data from multiple external threat intelligence platforms and combining it with real-time local data for multiple correlation analysis techniques, threat events are generated, including IoC matching, TTP behavior pattern recognition, and risk assessment, enabling intelligent correlation analysis.
It significantly improves the depth and breadth of threat intelligence utilization, improves the accuracy of threat detection, reduces false alarm rates, enhances the ability to discover unknown and advanced threats, implements risk-driven adaptive defense, and provides a more insightful view of the security situation.
Smart Images

Figure CN120675744A_ABST