Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

42 results about "Event mapping" patented technology

Big data storage-based credential application software compatibility test method

The invention discloses a method for testing compatibility of creative application software based on big data storage. The method comprises the following steps: acquiring environment and version information to generate fingerprints; similar evidence extraction failure feature clusters are recalled; evaluating a case risk sequence based on the cluster and evidence; a version difference event mapping graph is used for obtaining a seed; spreading the seeds to obtain an influence domain and generating an increment regression set; the duplicate removal execution cases are combined, and receipts and judgment are output; inference of a minimum cost explanation path is hit by the failure case atlas; obtaining a consensus root cause according to the explanation path, and generating complementary measurement and verification; and verifying the gating updating atlas and precipitating new evidence to drive self-updating. According to the method, incremental regression and root cause interpretation updating are realized by utilizing differential propagation and anti-fact verification closed loop of the environment and version fingerprints and the compatible relationship knowledge graph, and the method has the advantages of high efficiency, high coverage and high credibility.
Owner:GUOZHIXIN (QINGDAO) INFORMATION SECURITY TECHNOLOGY CO LTD

Server hardware information processing method and device

The invention discloses a server hardware information processing method and device, and relates to the technical field of server hardware information processing, and the method comprises the steps: obtaining a dynamic change mode in a fault event mapping table, and carrying out the real-time monitoring of the numerical fluctuation and state conversion of hardware configuration parameters, if it is detected that the parameter value exceeds the normal range or the state is abnormally skipped, a deep analysis mechanism is triggered to carry out fine-grained information extraction on related hardware components, and specific fault hardware positions and configuration abnormity details are determined; constructing a multi-dimensional hardware health state evaluation matrix according to the configuration exception details and the historical fault modes, and judging the overall operation state and potential risk points of the current hardware system by comprehensively analyzing the hardware category, the model parameter, the timestamp information and the configuration change trend; and a complete hardware information analysis result supporting accurate fault positioning is obtained.
Owner:BEIJING DISCOVERY INTELLIGENT MFG TECH CO LTD

System for providing event-driven distributed data mesh analytics

A system for event-driven distributed data network analysis, the system includes: a multitude of domain data nodes, each comprising a stream storage, a multitude of transformation pods, and a product API, with each domain data node ingesting heterogeneous event streams, validating schema compliance, performing enrichments, and making data products available under versioned schema contracts; each domain data node further comprises a hardware-based edge intelligence appliance comprising an enclosure, a compute module with heterogeneous processing units selected from CPUs, GPUs, and TPUs, a secure enclave module for confidential execution of transformation code on encrypted data, a protocol-structured stream storage medium supporting multi-level retention, and industrial I / O interfaces configured for direct interaction with sensors, programmable logic controllers, and cloud-native services; an event mesh backbone processor configured to connect the multitude of domain data nodes via a publish-subscribe architecture, with the backbone guaranteeing exactly one-time delivery, partition-level sorting, and geo-replicated durability; a Contextual Intelligence Engine coupled with the Event Mesh Backbone processor, the engine comprising a semantic graph memory and a Streaming Graph Reasoner configured to map raw events into an ontology, perform graph joins in real time, and recognize composite causal patterns across multiple domain data nodes; a governance and policy control unit integrated into both the data and control layers. This layer enforces zero-trust security, role-based access control, real-time provenance tracking, and regulatory compliance; and An actuation interface coupled with the contextual intelligence engine and the governance layer. The actuation interface is configured to generate control commands for operational technology devices and digital workflows, thus closing the loop from data acquisition to autonomous decision-making.
Owner:GUTTIKONDA BHANU SEKHAR KRISHNA +4

Task scheduling and arranging system, method and equipment and storage medium

The invention provides a task scheduling and arranging system, method and device and a storage medium, and relates to the technical field of task system management, and the system comprises a gateway cluster module which is used for obtaining a task creation demand of a client; matching in the gateway node according to a task creation demand to obtain a process definition; creating a process instance according to the process definition, and generating a task instruction corresponding to the task creation demand according to the process instance; the work cluster module is used for executing the task instruction through a work node to obtain a real-time state event of task execution; the gateway cluster module is also used for mapping the real-time state event to a process instance and judging whether the execution task is completed or not according to the mapped process instance; and after the task is executed, processing a task result according to the task creation requirement. According to the method, the problems of large delay, weak management capability and the like of task scheduling and arrangement in a large-scale scene in the prior art are solved, and the high requirement of a service system on task scheduling and arrangement can be better met.
Owner:CHINA UNICOM ONLINE INFORMATION TECHNOLOGY CO LTD

Click event mapping method, device and equipment based on vehicle-machine interaction and medium

The invention provides a click event mapping method, device and equipment based on vehicle-machine interaction and a medium, and the method comprises the steps: responding to a click event on a target image in a vehicle-machine window, and determining a first two-dimensional coordinate at a click position, the target image comprising a super-resolution rendering image; according to a coordinate mapping function from the target image to an original image, the first two-dimensional coordinate is converted, a second two-dimensional coordinate on the original image is obtained, the original image comprises a three-dimensional image, and the conversion frequency of the first two-dimensional coordinate is the same as the image processing frequency from the original image to the target image; constructing a coordinate projection matrix corresponding to the original image, and converting the second two-dimensional coordinates to obtain three-dimensional coordinates on the original image; and determining a target object corresponding to the click event according to the three-dimensional coordinate and a preset object mapping configuration. In combination with multi-level coordinate reverse mapping and a three-dimensional view angle calibration mechanism, the problem of dislocation between the click position and the 3D object is effectively prevented, and the interaction experience of the user is improved.
Owner:CHONGQING WUTONG CAR LINK TECH CO LTD

Prioritization of attack techniques against an organization

ActiveUS12401673B2Securing communicationAttackEvent mapping
One or more systems, devices, computer program products and / or computer-implemented methods provided herein relate to prioritization of attack techniques and cyber security events. According to an embodiment, an attack prioritization engine can receive security events, train an artificial intelligence model to rank respective cyber security events as a function of risk, and output a prioritization of security events to address. A mapping component can map asset vulnerabilities to attack techniques. A calculation component can calculate and aggregate scores for respective attack techniques. An attack surface component can extract features from the aggregation of scores to rank attack techniques and determine an attack surface. The mapping component can further map security events to the attack techniques.
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

Implementation method of intelligent non-player character in interactive game

The invention provides a method for realizing an intelligent non-player character in an interactive game, which relates to the field of data processing and comprises the following steps of: packaging a decision intention into an immutable action package in a predefined decision period and placing the action package in a time domain trusteeship queue to realize time decoupling of a decision and a runtime load; the world state projection is divided into an opaque decision phase and a reconciliation phase, the decision phase only exposes the event category projection and the historical abstract, and the reconciliation phase reflows detailed trigger details in an independent window for posteriori maintenance but does not backtrack submitted actions; submission follows an atomization criterion and the submitted abstract does not contain time information; during resource contention, accumulating in response to a debt, and repaying through display shaping on the premise of not exposing a time sequence so as to keep the semantic consistency of main games; the posterior processing updates the action banks and event mappings offline based on the backflow details to improve subsequent decisions.
Owner:HUNAN UNIV OF SCI & ENG

Collision detection and avoidance within a mine

A method is provided that includes receiving mine operation data from a set of data sources in a mine, processing the mine operation data to detect a set of events that satisfy at least one operator attention trigger condition, mapping the set of events to a mine model based on location information associated with events in the set of events, determining an affected location area of the set of events mapped to the mine model, generating an operator attention indicator to display the set of events in the affected location area in the mine model to an operator to adjust operation of one or more mine operation devices depending on a density of events in the affected location area.
Owner:SANDVIK MINING & CONSTR OY +1

A landscape greening maintenance planning method and system

The present application relates to the field of data processing of landscape greening maintenance management, and particularly relates to a landscape greening maintenance planning method and system. The method comprises: obtaining multi-source maintenance data and generating a set of maintenance object portraits by association; extracting requirements and matching task windows to generate a set of maintenance requirements; generating a maintenance task priority queue by fusing multi-level sorting of complaint events, work windows and task pre-post relationships; performing resource matching, executing same-area task merging, cross-area route merging and task splitting for resource conflicts on the matching results to generate the best feasible maintenance planning scheme; mapping dynamic events into planned influence types to update the task queue and resource allocation, and feeding back the execution results to the portrait set to update the planning parameters, forming a self-evolving execution closed loop. The present application significantly improves the resilience of greening maintenance planning under dynamic interference and resource resilience, and realizes the intelligent upgrading from static scheduling to adaptive learning.
Owner:SHANDONG LUTAI HIGHWAY ENG CO LTD

New energy logistics network intelligent management system and method based on digital twinning

The invention discloses a new energy logistics network intelligent management system and method based on digital twinning, and relates to the technical field of logistics network management.The system senses abnormal events in a logistics network in real time, maps the events to a digital twinning body through semantic analysis, and adjusts the topological structure and operation parameters of the digital twinning network; on the basis of the digital twin network, a seepage model of abnormal event influence propagation is constructed, the infection probability and seepage centrality of network nodes are analyzed, and an abnormal influence thermodynamic diagram is generated; constructing a scene tree according to the abnormal influence thermodynamic diagram and the current scheduling plan, performing parallel simulation on each branch of the scene tree in a digital twin environment, and selecting an optimal scheduling strategy through target evaluation; and tracking an execution effect in real time, constructing an experience case library, and matching similar historical scenes through analogy reasoning to realize self-adaptive optimization of an exception coping strategy. The response speed is improved; and the robustness of the system is improved.
Owner:HANGZHOU CHENGFENGLAI DIGITAL TECH CO LTD +1

Fault diagnosis method and device based on causal state space prompt, medium and electronic equipment

The invention provides a fault diagnosis method and device based on causal state space prompt, a medium and electronic equipment, and relates to the field of data processing, and the method comprises the steps: mapping each IT operation and maintenance event into an event feature vector; inputting the online state space model according to a time sequence, and outputting a potential hidden state corresponding to each time step; in response to the received IT operation and maintenance diagnosis request, mapping the potential hidden state corresponding to the current time step into a plurality of discrete state lexical elements; and splicing the problem description corresponding to the IT operation and maintenance service interruption, the IT operation and maintenance event occurring in the target time window and the plurality of discrete state lexical elements into a target prompt, and inputting the target prompt into the frozen large language model to obtain a fault diagnosis result. The method not only has the advantage of natural language reasoning of the large language model, but also avoids the illusion problem caused by limited context windows and missing of key causal information, and meanwhile, the use mode of freezing the large language model greatly reduces the training cost and the computing power consumption.
Owner:ANHUI AGRICULTURAL UNIVERSITY

Business process item analysis method and device, equipment and storage medium

PendingCN120672018AOffice automationConditional expressionEvent mapping
The invention provides an analysis method, device and equipment for business process items and a storage medium, and the method comprises the steps: receiving a change signal, converting a state change signal into a standardized event according to a predefined event mapping rule, storing the standardized event into a priority event queue, and storing the priority event queue into a priority event queue; processing the events in the event queue according to a priority sequence; then, querying an item flow configuration library according to the type and the attribute of the event, and identifying all connecting lines associated with the event; and finally, evaluating a condition expression of each connecting line, determining the connecting line meeting the condition, for the connecting line meeting the condition, transmitting source item data and creating a target item instance, initializing the state of the target item instance to detect whether creation is successful, if yes, triggering a creation success event of the target item and continuing item circulation, and if not, returning to the next step. The problem that service flow is interrupted when no manual intervention exists in an existing service process is solved.
Owner:XIAMEN WEIER INFORMATION TECHNOLOGY CO LTD

Event-based document retrieval method and device, electronic equipment and storage medium

The application provides an event-based document retrieval method and device, electronic equipment and storage medium, wherein the method comprises: obtaining a user query statement of a user for a document set to be retrieved; inputting the user query statement into a pre-trained large language model to obtain a document retrieval result; wherein the large language model is obtained by training and optimizing a training sample data set composed of a document representation and a document identifier, the document representation is obtained by events and event relationships in the document set to be retrieved, and the document identifier is obtained by mapping the events in the document set to be retrieved to an event hierarchy. The method considers the relevance between document contents, effectively represents the document to be retrieved by using events and event relationships, and significantly improves the document retrieval performance of the large language model; the event hierarchy is used to construct a document identifier with a clear semantic structure, effectively strengthening the connection between the document identifier and the document content.
Owner:TSINGHUA UNIVERSITY

Coherent containerized computing

Aspects of the present disclosure relate to coherent containerized computing. More specifically, a method is described that includes obtaining an indication of a workload and an indication of an event. The method further includes mapping the event to a first container in a plurality of containers, where each container in the plurality of containers is configured for a different processor architecture, and where the first container is configured for a first processor architecture. The method also includes performing, by a first processing device configured with the first processor architecture, the workload by way of the first container.
Owner:RED HAT INC

A video synchronization method and an electronic device

The application discloses a video synchronization method and an electronic device, the method comprising: detecting an event of a vehicle, determining a corresponding event trigger frame of the event in a video stream, and generating a unique global event identifier for the event; determining a target frame based on a first video frame before the event trigger frame and / or a second video frame after the event trigger frame in the video stream; writing semantic event time information corresponding to the target frame into a video coding stream corresponding to the target frame through a supplemental enhancement information frame; wherein the semantic event time information comprises the global event identifier, a timestamp of the event trigger frame, and a relative time offset of the target frame relative to the event trigger frame; and sending the video coding stream carrying the semantic event time information to a cloud end, so that the cloud end establishes an event mapping relationship according to the semantic event time information, and a playing terminal aligns multiple video streams according to the relative time offset of the video frames with the event trigger frame as a time axis origin.
Owner:SHENZHEN STREAMING VIDEO TECH

Power state adjustment based on event mapping

Systems, methods, and non-transitory media are provided for adjusting camera settings based on event data. An example method can include obtaining, via an image capture device of a mobile device, an image depicting at least a portion of an environment; determining a match between one or more visual features extracted from the image and one or more visual features associated with a keyframe; and based on the match, adjusting one or more settings of the image capture device.
Owner:QUALCOMM INC

Method and apparatus for monitoring and updating document semantic consistency

PendingCN122635514ARealize dynamic closed-loop managementAdaptive learningLinguistic model
Embodiments of the present application provide a document semantic consistency monitoring and updating processing method and device. The method comprises: determining a baseline event package corresponding to a release source of a document by using a preset large language model; based on the baseline event package, extracting a clause-level entity node in the file by using the large language model, constructing a dependency edge with metadata, and forming a knowledge graph of clause-level risk dependencies; obtaining a change event of the document, mapping the change event to the knowledge graph, calculating a risk score of an affected clause in the knowledge graph, and determining a structured risk report based on the risk score; executing a hierarchical response based on the structured risk report to generate revision suggestions, obtaining confirmed revision content as a response result, and performing versioned updating of the knowledge graph based on the response result, and performing adaptive learning and optimization of the large language model by using the response result. The scheme of the present application solves the problems of poor timeliness, high semantic risk and low updating efficiency of the document.
Owner:国投融合科技股份有限公司

Data security control method and system

The invention discloses a data security management and control method and system, which are applied to a network security system comprising a plurality of data source nodes and a central management and control node. The method comprises the following steps: gathering multi-source original security data through a central management and control node, and configuring a data source type symbol and an association or influence characteristic value for each node; according to a preset association threshold set associated with the data source type, the center node comprehensively processes the information, and constructs a system-level security situation association chain representing different security domains, asset groups and logical association among the different security domains and asset groups in the network; and finally, the specific security event or log is dynamically allocated to the specific logic security space or asset container identified by the chain. The corresponding system comprises a plurality of collaborative modules such as data aggregation and feature association, strategy library interface, associated event identification, security chain set derivation, situation topology synthesis, security event mapping and dynamic control strategy. According to the method, the transformation from fragmented alarm to global situation cognition is realized, a complex attack chain can be effectively identified, context-based accurate dynamic response is supported, and the automation and intelligence level of safe operation is improved.
Owner:SHANDONG HUIZHENG INFORMATION TECH CO LTD

Network node semantic information mining method, device, storage medium and electronic device

The present invention provides a method, device, storage medium, and electronic device for mining semantic information of network nodes, and relates to the technical field of network node semantic information mining. The technical solution of the present invention constructs a weighted undirected network between enterprises based on enterprise text data, and utilizes a rule-based event mining algorithm and a time decay function to construct a negative event mapping function to mine negative event information of enterprises. An improved PageRank algorithm and the negative event information are then used to mine the node semantic information of the weighted undirected network. The present invention not only avoids the influence of human subjectivity in the process of mining semantic information of network nodes, but also utilizes computers and corresponding algorithms to replace manual operations, avoiding the problems of low efficiency and high cost in data processing, making the results of network node semantic information mining more objective, accurate, true, and effective.
Owner:HEFEI UNIV OF TECH

A resource state event aggregation method and device, electronic equipment and storage medium

The application discloses a resource state event aggregation method and device, electronic equipment and a storage medium, and aims at solving the technical problems that the original Kubernetes resource state event is limited by storage, the storage period is short, and the extraction efficiency is low. The application comprises the following steps: creating a resource state event of a preset cluster resource; mapping the resource state event to a preset message queue; extracting the resource state event in the preset message queue, and generating a compressed index of the preset cluster resource; and aggregating the resource state event according to the compressed index to obtain an aggregation result of the resource state event.
Owner:WENYUAN SUHANG (JIANGSU) TECH CO LTD

Cryptographic event classification method and system based on prompt learning

Embodiments of the present disclosure provide a prompt learning-based encrypted event classification method and system. Applied to the field of encrypted event classification; the method comprises: according to a preset encrypted event mapping dictionary, mapping each encrypted number in the encrypted event into a Chinese character respectively to obtain an encrypted text with Chinese characters; performing word segmentation on the encrypted text with Chinese characters to obtain a subword sequence; retraining a bert pre-training model by taking the subword sequence and the corresponding mask label as a training set to obtain a retrained bert pre-training model; organizing the encrypted event and the corresponding encrypted event category label in the form of a pre-defined template; further training the retrained bert pre-training model by taking the encrypted event and the corresponding encrypted event category label organized in the form of a template as a training set to obtain an encrypted event classification model. In this way, the classification of encrypted events is realized, and the accuracy of encrypted event classification is improved.
Owner:TERMINUS (CHONGQING) INFORMATION TECHNOLOGY SERVICES CO LTD

Enterprise production cost accounting system sensed by Internet of Things

The invention discloses an enterprise production cost accounting system perceived by the Internet of Things, and relates to the technical field of data processing. During operation of the system, original perception data are mapped into production events with cost semanteme, and a production event flow output by a semantic event mapping module is received and processed; and the real-time fusion calculation of the dynamic data and the static cost model is realized based on event driving so as to output a real-time cost flow, and the real-time cost flow is output through a preset abnormal state pattern library and an efficiency baseline model based on the equipment operation state time sequence data acquired by the Internet of Things perception acquisition module and the production event sequence output by the semantic event mapping module. And the hidden cost quantification module identifies and quantifies the hidden cost generated by non-value-added operation of the equipment, carries out aggregation, visualization and structured output on the real-time cost flow output by the dynamic cost tracing module and the hidden cost report output by the hidden cost quantification module, and provides a standardized data interface for an enterprise resource planning system or a manufacturing execution system.
Owner:HENAN UNIV OF URBAN CONSTR

Rail Transit Map Drawing System, Method, Electronic Device and Storage Medium

The present invention provides a rail transit map drawing system, method, electronic device and storage medium. The system includes: an event reading unit, configured to receive a mapping instruction and, based on the mapping instruction, determine a first window event; the first window event is used to represent the operation information in the mapping instruction; an event conversion unit, configured to parse the first window event to obtain a second window event for representing the action type corresponding to the operation information, and construct an event mapping tree with each action type in the second window event as a node; an event execution unit, configured to determine whether to execute the action of the corresponding node based on the semantic information of each node in the event mapping tree. If so, obtain the graphic parameters of the corresponding node from the graphic database; a graphic display unit, configured to generate and display a rail transit map based on the graphic parameters. The present invention simplifies the process of drawing a rail transit map and reduces the maintenance cost of the system.
Owner:CRSC URBAN RAIL TRANSIT TECH CO LTD

Systems, methods, and media for electronic document management in a computing environment

ActiveUS12717754B2EngineeringEvent tracking
Techniques are provided for electronic document management in a computing environment. A business unit and a document type determined for an electronic document may be used to determine that an electronic document is required to adhere to an event-based retention policy. An entry for the document can be created in an event-mapping data structure. Events and actions that occur at each system of record can be tracked by generating an entry in an event tracking data structure. The system of record and attribute value from each entry in the event tracking data structure may be utilized to identify matching entries in the event-based mapping data structure. The expiration date in a matching entry, which corresponds to an electronic document, can be updated using the event date in the event tracking entry and the duration of the event-based retention policy included in the matching entry.
Owner:FMR CORP

Programmable processing of network protocol packets

System and methods for processing state-based network packets are described herein. Processing of network protocol packets can include classifying events associated with the network protocol packet based on a current, internal protocol state and event type. The techniques may map these events to actions. For instance, the techniques may map these incoming events to specific indices within a TCAM. The indices may be used to lookup “actions” encoded within an SRAM. The system may utilize these actions to generate one or more outgoing messages as well as determine possible “next” state transitions. Accordingly, by utilizing contents of a TCAM and SRAM, the techniques may facilitate dynamic and flexible programmability of processing network protocol packets.
Owner:SPEEDNIC LLC

Systems, methods, and media for electronic document management in a computing environment

Techniques are provided for electronic document management in a computing environment. A business unit and a document type determined for an electronic document may be used to determine that an electronic document is required to adhere to an event-based retention policy. An entry for the document can be created in an event-mapping data structure. Events and actions that occur at each system of record can be tracked by generating an entry in an event tracking data structure. The system of record and attribute value from each entry in the event tracking data structure may be utilized to identify matching entries in the event-based mapping data structure. The expiration date in a matching entry, which corresponds to an electronic document, can be updated using the event date in the event tracking entry and the duration of the event-based retention policy included in the matching entry.
Owner:FMR CORP

System and method for utilizing event data to determine a user persona

Systems and methods for analyzing event data to determine an event pattern, and then determining a user persona are disclosed. The method may include, such as by one or more processors: (i) receiving event data; (ii) determining an event mapping based upon the event data; (iii) converting the event mapping into an event numeric array; (iv) converting the event numeric array into an event vector; (v) receiving stored event vectors from data stores; (vi) inputting the stored event vectors and the event vector into trained machine-learning models; (vii) receiving a predicted scenario vector from the trained machine-learning models; (viii) receiving stored scenario vectors from the data stores; (ix) inputting the stored scenario vectors and the predicted scenario vector into the trained machine-learning models; (x) receiving a scenario embedding from the trained machine-learning models; (xi) predicting a persona marker based upon the scenario embedding; and / or (xii) outputting the persona marker.
Owner:STATE FARM MUTAL AUTOMOBILE INSURANCE COMPANY

Psychological teaching strategy evolution method based on dredging effect feedback

PendingCN121961285AData processing applicationsMental therapiesCounseling strategyEvent mapping
The invention relates to the field of psychological teaching, in particular to a psychological teaching strategy evolution method based on dredging effect feedback. The method comprises the steps that a pressure situation label sequence is generated by obtaining a project teaching event log and combining a pressure situation word list and an event mapping table, meanwhile, reliability evaluation is conducted on a student psychological portrait field set, and an acquisition session configuration package is constructed; performing pre-test snapshot construction and grooming strategy assembly to form an intervention execution package; acquiring and aligning the intervened observation windows, and generating a comparable effect vector packet; carrying out tendency score calculation and dual robust estimation based on the effect vector packet to form a strategy evaluation record; and finally, updating the strategy evolution library according to the strategy evaluation record and generating a strategy analysis report. According to the method, comparable evaluation and iterative evolution of the dredging strategy under different pressure situations and psychological portraits are realized, and improvement of the stability and consistency of strategy adjustment and management in psychological teaching is facilitated.
Owner:SHANDONG TRANSPORT VOCATIONAL COLLEGE

A method and system for multi-view cross-process rendering based on the Godot engine

PendingCN122312386AGraphicsView based
This invention belongs to the field of graphics rendering and human-computer interaction technology, specifically a multi-view cross-process rendering method and system based on the Godot engine. The method includes: creating multiple independent rendering views within a single Godot engine instance; receiving handles to display surfaces created by external processes and establishing a one-to-many mapping between views and display surfaces; directing the rendering results of each view to one or more bound display surfaces; receiving input events containing source surface identifiers, finding the target view based on the mapping relationship, and accurately mapping the event coordinates to the target view coordinate system using a coordinate transformation algorithm that aligns the center point and scales the dimensions, then distributing the events to the corresponding interaction nodes. This invention ensures consistency in multi-screen display through a single-instance multi-view architecture, and significantly improves the interaction accuracy and reliability of multi-screen systems through precise cross-coordinate system event mapping and a multi-source input conflict arbitration mechanism.
Owner:HANGZHOU XINZHI IOT TECHNOLOGY CO LTD

A method for identifying a cyber attack chain, a computer device and a storage medium

ActiveCN116318806BAttackEvent graph
The present application relates to the technical field of information security, in particular to a network attack chain identification method, computer equipment and storage medium. The method collects log data of network security events for normalization processing; detection is performed through a security analysis engine; if a hit correlation analysis rule is found, security information is completed for assets, events are classified, and attack stages are completed; according to a security event set, a corresponding asset information set is extracted, and network security behavior events related to the asset set within a period of time are traced back; all network security behavior events meeting the conditions are constructed into a directed acyclic abnormal event graph according to source assets, affected assets and the earliest occurrence time, the optimal security event link sequence is selected as the attack stage link, and the remaining security events are mapped into each attack stage. A relatively complete and accurate attack chain can be constructed to support managers in handling work.
Owner:SHENZHEN METRO GROUP