一种网络安全信息的处理方法、装置及储存介质

By adopting a three-tier architecture of "preliminary analysis - behavioral analysis - intelligent control" and a time decay model, the problem of correlation mining and multi-stage attacks in existing network security analysis technologies has been solved. This enables accurate capture and differentiated control of complex attacks, adapting to the network environments of different enterprises.

CN120710786BActive Publication Date: 2026-07-17YANGZHOU QINGYAN SOFTWARE TECH CO LTD

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
YANGZHOU QINGYAN SOFTWARE TECH CO LTD
Filing Date
2025-07-30
Publication Date
2026-07-17

AI Technical Summary

Technical Problem

Existing network security analysis technologies are unable to effectively uncover the correlations between potential threats, distinguish between legitimate access by internal employees and abnormal behavior, traditional detection methods struggle to cope with multi-stage attacks, massive amounts of network data cause analysis delays, and rigid models are unable to adapt to new threats, all of which reduce the security of network information.

Method used

The system adopts a three-tier architecture of "preliminary analysis - behavior analysis - intelligent control". The preliminary data analysis module builds a control reference set, and the behavior analysis module generates a behavior reference set. Finally, the intelligent control module makes a comprehensive decision, introduces a time decay model and multi-indicator evaluation, and constructs a comprehensive behavior anomaly index to achieve dynamic risk assessment and differentiated control.

Benefits of technology

It achieves precise capture of complex attacks, supports differentiated management and control of internal/external IPs, forms a closed-loop protection system, adapts to different attack scenarios, ensures the rigor and flexibility of the analysis logic, and is adaptable to the network environments of different industries/enterprises.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120710786B_ABST
    Figure CN120710786B_ABST
Patent Text Reader

Abstract

本申请公开了一种网络安全信息的处理方法、装置及储存介质,涉及网络安全信息领域,包括数据初步分析模块、行为分析模块和智能网络管控模块,通过多维度数据分析与智能决策机制,显著提升了网络威胁检测的精准性和管控效率,构建了内外网IP差异化分析体系,通过结合工作时间段特征建立连接异常系数模型,实现对内部人员异常行为与非授权外部接入的精准识别,引入时间衰减机制的异常行为分析模型,既保留历史行为特征又强化近期行为权重,有效提升新型攻击模式的发现能力,通过危险评级系数与行为异常指数的加权融合,实现安全威胁的多维量化评估。
Need to check novelty before this filing date? Find Prior Art