Embodiments of the present application relate to the field of
network security protocol
vulnerability attack identification, and particularly relate to a Web
vulnerability attack type identification method, device, equipment and medium based on a large
language model. A specific implementation of the method includes: inputting pre-
acquired Web vulnerability attack data into a behavior accurate identification task template included in a multi-task prompt response
template library to obtain behavior accurate identification task information; performing greedy sampling
inference processing on the behavior accurate identification task information to obtain at least one
inference result; based on the multi-task prompt response
template library, performing standardized
processing on the Web vulnerability attack data to obtain Web standardized text; inputting the Web standardized text into an attack identification task template included in the multi-task prompt response
template library to obtain Web standardized prompt word information; inputting the Web standardized prompt word information into a pre-trained Web vulnerability attack type identification model to obtain vulnerability attack type information, and sending the vulnerability attack type information to an alarm terminal for alarm
processing. The implementation improves the identification effect of Web vulnerability attack behavior in real-world scenarios.