Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

8 results about "Information security risk assessment" patented technology

An API-based information security risk assessment method and system

This invention discloses an API-based information security risk assessment method, which includes: using traffic analysis to acquire API assets within an enterprise; using a sensitive data identification model to identify and locate sensitive data in log files or files; integrating a vulnerability rule set to detect vulnerabilities in APIs through an API vulnerability detection model; setting up an automatic behavioral risk monitoring engine to monitor and issue early warnings in real time for abnormal API calls to obtain data; constructing a network attack monitoring model; using a risk monitoring model trained based on historical monitoring data to draw API risk chain relationships, and combining clue association ranking analysis to infer suspicious data leakage paths; comprehensively recording API data usage behavior; and using a matrix method to calculate risks and generate an API information security risk assessment report. This method can establish a comprehensive API security risk assessment system, effectively identifying and managing API security risks and protecting enterprise data security.
Owner:SHENZHEN PENGQUAN TECHNOLOGY CO LTD

A Multi-Dimensional Dynamic Information Security Risk Assessment System and Method for Detection Platforms

ActiveCN122093175AReal-time safety margin synchronizationmeet tolerance boundariesSecuring communicationAttackFalse alarm
This invention discloses a multi-dimensional information security risk dynamic assessment system and method for detection platforms, relating to the field of information security technology. It collects multi-dimensional operational parameters such as assets, vulnerabilities, and attacks, converting them into risk factors. An initial comprehensive risk index is calculated using a radial basis function algorithm. Real-time business load is sensed to calculate weight offsets, and risk weights are redistributed and normalized, updating the risk index. A sliding assessment cycle is used to clean the sequence, and quantile regression is applied to determine a basic threshold. This basic threshold is then adjusted using historical statistical data of the load status to generate a dynamic risk threshold. When the risk index exceeds the dynamic threshold, a risk is identified and a response is triggered. This achieves accurate risk fusion and adaptive judgment, reduces response lag, and improves assessment accuracy, aiming to solve the problems of insufficient risk perception and high false alarm rates in complex environments.
Owner:江苏省软件产品检测中心

Intrinsic safety management and control method integrating function safety and information safety

The invention provides an intrinsic safety management and control method integrating function safety and information safety, and relates to the technical field of intelligent industrial control, and the method comprises the steps: determining a multi-dimensional scene data record and a unique scene code identifier; calculating risk indexes based on a preset functional safety and information safety risk assessment model, performing correction fusion according to dynamic parameters in combination with the personnel exposure degree, the ignition probability and the accident risk influence coefficient to obtain a comprehensive dynamic risk level, automatically generating dynamic risk decision content for unacceptable risks, and performing risk assessment according to the dynamic risk decision content. Such as instrument-equipment fault decision, maintenance decision, personnel management and control decision, function safety and information safety protection measure decision and the like, and full-life-cycle collaborative risk management and control of the industrial process are realized. According to the method, the problems of difficulty in unifying multi-source data, lack of modeling, scene expression and risk analysis algorithms and the like in the aspect of functional security and information security integrated dynamic risk analysis and decision making in the prior art are solved.
Owner:INSTR TECH & ECONOMY INST P R CHINA

Road geographic information safety risk assessment method for open test of intelligent network connection automobile

The invention discloses an intelligent connected vehicle open test road geographic information safety risk assessment method, and relates to the technical field of road safety assessment, and the method comprises the steps: obtaining open test road geographic environment data, carrying out the preprocessing of the open test road geographic environment data, and obtaining the preprocessed region data; performing security risk factor identification on the preprocessed regional data to obtain data security risk factors; calculating a security risk score of each data security risk element; and performing security risk assessment through the security risk score to obtain an assessment result. According to the evaluation method, various potential safety risk factors in the open test road geographic environment can be comprehensively considered, and scientific and reliable geographic information safety guarantee is provided for the open test of the intelligent connected automobile through accurate calculation and evaluation. According to the method, the safety of the test road is improved, and powerful support is provided for research, development and popularization of the intelligent networked automobile.
Owner:GUANGZHOU URBAN PLANNING & DESIGN SURVEY RES INST +1

A train wireless network control system information security risk assessment method

ActiveCN121218180BParticular environment based servicesFor mass transport vehiclesWireless networked control systemAttack
The present application relates to train wireless network communication technical field, specifically to a kind of train wireless network control system information security risk assessment method, including according to the object of risk assessment to establish attack tree model, the possibility of security event is assessed using triangular fuzzy number and occurs, attack path is analyzed, and the interval probability of each attack path is calculated, point probability is obtained according to attack path interval probability, the possibility of attack is calculated, the influence of security event is evaluated using fuzzy analytic hierarchy process, the possibility of security event and impact value are quantified, security event risk value is calculated, the risk level and security level of system are determined according to system risk assessment value, corresponding protection requirements are formulated.The present application effectively evaluates and manages the information security risk of train wireless network control system, provides basis for formulating effective security protection strategy, and improves the overall security capability of train wireless network.
Owner:DALIAN JIAOTONG UNIVERSITY

Information security risk assessment and detection integrated system and method

The invention discloses an information security risk assessment and detection integrated system and method, and relates to the technical field of computer information security, the method comprises the steps of multi-source log acquisition, structured processing, dynamic compliance modeling, intention discriminant analysis and risk response linkage, and a behavior baseline model is constructed by performing semantic analysis and clustering on historical operation logs; according to the scheme, the semantic features and the compliance index of the current operation are combined, the threat confidence coefficient is calculated, deliberate damage, non-malicious damage or normal operation is automatically judged, a corresponding response strategy is triggered, deep fusion of risk assessment and anomaly detection can be achieved, and the active defense capacity of an information system is improved.
Owner:江苏省软件产品检测中心

An intelligent network connected vehicle information security risk assessment method and system

The application is suitable for the field of intelligent networked automobile technology, and provides an intelligent networked automobile information security risk assessment method and system.The method comprises the following steps: acquiring real-time road condition summary data in a preset road section in a specific road, historical passing track data of a target vehicle, and a vehicle group target direction corresponding to a vehicle-to-vehicle temporary relay; extracting low-precision road condition information related to the dynamic of the target vehicle from the real-time road condition summary data, and determining a predicted heading consistency index and a predicted residence persistence index of the target vehicle based on the low-precision road condition information.The future driving trend and residence capacity of the vehicle can be predicted without the vehicle publicly disclosing the accurate destination or continuous track; and the predicted value is dynamically corrected by taking the historical average angle deviation proportion as a correction factor, so as to generate a predicted comprehensive dynamic score value which can comprehensively reflect the direction deviation risk, the communication interruption risk and the potential malicious relay risk.
Owner:安徽中科星驰自动驾驶技术有限公司

Wind power system information security risk assessment method and device

The invention discloses a wind power system information security risk assessment method and device, and the method comprises the steps: building a multi-source data fusion model through collecting the multi-source heterogeneous data of a wind power plant group, obtaining a multi-dimensional data observation tensor, building a wind power system information dynamic behavior baseline model of a self-adaptive space-time diagram neural network based on the multi-dimensional data observation tensor, and carrying out the wind power system information security risk assessment. On the basis of the difference value between the output of the wind power system information dynamic behavior baseline model and actual data, a wind power plant group information collaborative intelligent safety risk assessment model is constructed, and accurate description and intelligent risk assessment of wind power system information behaviors are achieved. Therefore, the information security protection level and the long-term operation stability of the wind power system in a complex and changeable environment are improved, and the technical problems that the security situation of the system is difficult to comprehensively describe and the time-varying property of the operation state of the wind power system and the working condition drift problem are not fully considered in an existing wind power system information security assessment method are solved.
Owner:ELECTRIC POWER RES INST CHINA SOUTHERN POWER GRID CO LTD