The invention discloses a training data generation method and device for a
network attack recognition model and
electronic equipment, and relates to the field of
network security, and the method comprises the steps: collecting to-be-recognized emails from a plurality of information sources, carrying out the classification
processing and labeling
processing of the preprocessed to-be-recognized emails, obtaining a labeled email sample set, and storing the labeled email sample set in a
database; extracting content features, sender features, structural features and attachment features to obtain a sample
feature set, performing
data synthesis by using a
generative adversarial network model, generating a synthesized mail sample, converting the labeled mail sample and the synthesized mail sample into a preset model
data format, generating a model training
data set, training a preset large
language model, and obtaining a new mail sample; and identifying whether the contact emails are
phishing emails or not through the model. According to the method and the device, the technical problems that omissions of mail filtering are easily caused and the
user satisfaction is influenced because a model for identifying
phishing mails cannot update training data for identifying an
attack mode in time in related technologies are solved.