Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

22 results about "Risk vulnerability" patented technology

A vulnerability is a weakness or gap in our protection efforts. Risk – The potential for loss, damage or destruction of an asset as a result of a threat exploiting a vulnerability. ... Risk is a function of threats exploiting vulnerabilities to obtain, damage or destroy assets. Thus, threats (actual, conceptual, or inherent) may exist, but if there are no vulnerabilities then there is little/no risk.

Method and device for constructing network security operating system, electronic equipment and storage medium

ActiveCN121887549AArtificial lifeSecuring communicationOperational systemTrusted computing base
The invention belongs to the field of network security, and relates to a method and a device for constructing a network security operating system, electronic equipment and a storage medium, and the method comprises the following steps: constructing an autonomously controllable improved microkernel infrastructure; based on the microkernel infrastructure, constructing a full-stack layered security control computing architecture base; constructing intelligent agent components, and deploying a multi-intelligent agent collaborative protection component system; integrating trusted computing and an integrity measurement verification system; performing dynamic adaptation and execution of multiple security policies; and a standardized safety evaluation and adaptive optimization closed loop is established. A trusted computing base is cut from a design source, so that the probability of occurrence of high-risk vulnerabilities is reduced; the real-time defense that the threat is changed and the strategy is changed is realized, and the blind area of the static strategy in resisting the unknown threat is made up; the malicious codes can be blocked before running, and the post passive situation that traditional security software only depends on a feature library for searching and killing is broken; and the contradiction between security capability solidification and threat dynamic evolution is fundamentally solved.
Owner:SHENZHEN Y& D ELECTRONICS CO LTD

Enterprise-level three-party dependent package security management and control system and method

The invention discloses an enterprise-level three-party dependency package security management and control system and method, and relates to the technical field of software supply chain security, and the enterprise-level three-party dependency package security management and control system comprises the following modules: a timed task scheduling module, an external network package pre-scanning module, a private service package monitoring module, a dependency graph construction module, a product management and control module and a notification display module. By establishing an external network packet pre-scanning mechanism, security scanning is performed and a blocking list is generated before a dependent packet enters an enterprise private server, and introduction of a packet containing high-risk vulnerabilities is blocked from the source; meanwhile, through the continuous monitoring of the private server package and the construction of the dependency relationship graph, the vulnerability discovery and the accurate positioning of the influence range of the stored dependency package are realized; and finally, performing hierarchical management and control on the affected products based on vulnerability levels, and realizing timely transmission and situation visualization of risk information through a notification display module. According to the invention, full-life-cycle safety protection from an external network source to internal products of an enterprise is realized, and the safety management level and risk response efficiency of the dependent package of the enterprise are effectively improved.
Owner:CHINA FAW CO LTD +1

Code auditing method and system

The invention relates to the technical field of code auditing, and discloses a code auditing method and system, and the method comprises the steps: based on code data uploaded by a user, analyzing an initial risk point fixed point, carrying out the operation simulation based on an initial risk positioning point, generating simulation execution path data, carrying out the potential path risk simulation, obtaining an extended risk point set, and carrying out the code auditing. Performing verification during actual operation on the extended risk point set, generating a dynamic verification result, performing cross comparison on the result and the initial risk positioning point set, generating a verified risk vulnerability list, performing vulnerability association analysis in combination with service logic and data flow context, generating associated vulnerability data, and performing code repair. According to the code auditing method and the code auditing device, the code auditing efficiency and the code auditing accuracy can be improved.
Owner:BEIJING QIUFENG CODE TECHNOLOGY CO LTD

Software source code vulnerability detection method, device and system

The invention relates to the technical field of code vulnerability detection, in particular to a software source code vulnerability detection method, device and system, and the method comprises the steps: obtaining an abstract syntax tree of a source code stream, and calculating the syntax depth of each statement in a source code; determining the data flow importance of each statement based on the connection condition of the corresponding edge of each statement in the data flow diagram of the statement in the source code; determining a correlation score of each statement; matching and identifying a high-risk statement in the source code, and determining a local window scale of the high-risk statement; for source codes in the local window of the high-risk statement, determining the attention weight of each token to obtain a context condensation vector of the local window, and screening from all the tokens of the local window to obtain a priority position list; and calculating a self-adaptive threshold value of the local window so as to judge the vulnerability probability of the code snippets in the local window, and performing sandbox verification on the high-risk vulnerability by utilizing the priority position list. Therefore, the source code vulnerability detection accuracy is improved.
Owner:WUXI SOFT TEST CERTIFICATION CO LTD

A vulnerability risk reachability analysis method, electronic device and storage medium

The present application relates to the technical field of data analysis, and particularly relates to a vulnerability risk reachability analysis method, an electronic device and a storage medium, wherein the initial risk evaluation value of a vulnerability is obtained by performing vulnerability scanning analysis on target code, and the reachability analysis weight is determined in combination with the path reachability analysis value and the conditional reachability analysis value, and finally the target risk evaluation is obtained, the actual possibility of the vulnerability being exploited is fully considered, compared with the traditional risk assessment based on inherent harm only, the real risk degree of the vulnerability can be more accurately reflected, a more reliable basis is provided for security decision, the target risk evaluation value can provide a reference for resource allocation, high-risk vulnerabilities can be preferentially processed in the vulnerability repair process, blind repair of vulnerabilities is avoided, and the efficiency of vulnerability management is greatly improved.
Owner:QINGDAO WANDAO (BEIJING) INFORMATION TECH CO LTD

Multi-source data fused power system network security threat analysis and early warning method, system, equipment and medium

The invention discloses a multi-source data fused power system network security threat analysis and early warning method, system, device and medium, and belongs to the technical field of power system network security, and the method comprises the steps: collecting network security data and network vulnerability data through a network database of a power dispatching center, and carrying out the preprocessing; calling network security data, performing analysis and calculation to obtain a network security index, triggering an alarm when the network security is threatened, and performing analysis and monitoring on network vulnerabilities; calling the network vulnerability data, performing analysis and calculation to obtain a restoration priority index of the network vulnerabilities, and dividing the vulnerabilities into high-risk vulnerabilities and common vulnerabilities according to the restoration priority index; and obtaining a repair priority index of the high-risk vulnerability, generating a priority repair work order according to the repair priority index of the high-risk vulnerability, and performing priority repair on the network high-risk vulnerability according to the priority repair work order. According to the invention, under the condition of limited resources, the most serious security threat is firstly solved.
Owner:GUIZHOU POWER GRID CO LTD

Method and system for security evaluation of self-developed information system code in large enterprises

The application provides a large enterprise internal self-development information system code security evaluation method and system. The application uses code security visualization integrated management technology, distributed message queue technology, flow collection technology and vulnerability detection technology to realize security detection of enterprise internal self-development system code, high-risk vulnerability scanning, effectively solve the problem of frequent security vulnerabilities of self-development information system after online, and provide real-time reliable data support for the code security situation and information security situation of the development department at all levels for the company information management layer through the visualization integrated management technology. In addition, the application can be applied to the large enterprise internal self-development information system development team, and the information security vulnerability detection is carried out on the code side before the information system is online, so that the information security vulnerability can be found in time and effectively.
Owner:CHINA NAT PETROLEUM CORP +1

Packet forwarding method and apparatus

The application provides a message forwarding method and device. In the embodiment, a head node respectively issues an SRv6TE Policy source path route and a source path control probe message to other nodes on a current path, so as to trigger the other nodes on the current path to generate a source path control table. The source path control table contains routing and forwarding information that nodes on a path of an existing SRv6TE Policy do not care about before, so as to inhibit a risk vulnerability caused by the fact that the nodes on the path of the existing SRv6TE Policy do not care about the routing and forwarding information, and improve the security of an SRv6 network.
Owner:NEW H3C TECH CO LTD

Vulnerability hidden danger scanning verification system for electric power information system

The invention relates to the technical field of scanning verification, and discloses an electric power information system vulnerability hidden danger scanning verification system. Comprising a data set module for matching and binding power data and power equipment into a data set, an active scanning module for actively scanning suspicious vulnerabilities of the data set, an intrusion verification module for performing intrusion verification on the suspicious vulnerabilities and verifying risk vulnerabilities, and a vulnerability assessment module for assessing vulnerability hidden danger levels of the power information system. According to the method, the hindrance encountered by loophole hidden dangers during active scanning is reduced, the phenomena of mismatching of verification conditions and inaccurate verification results caused by sharing one verification environment are avoided, and the risk hidden dangers of suspicious loopholes can be accurately verified by utilizing an intrusive verification mode; the scanning verification effect of two dimensions of active non-intrusive scanning and active intrusive verification of the loophole hidden danger is realized, and the scanning verification accuracy of the loophole hidden danger in the electric power information system is greatly improved.
Owner:STATE GRID FUJIAN ELECTRIC POWER CO LTD

Multi-dimensional performance evaluation honey spot deployment method based on multi-objective optimization and related equipment

The invention discloses a multi-dimensional performance evaluation honey spot deployment method based on multi-objective optimization and related equipment. The method comprises the following steps: acquiring network information of a target network, constructing an attack graph and analyzing a permeation path to obtain attack graph data; calculating a multi-dimensional deployment efficiency index according to the network information and the attack graph data; taking the multi-dimensional deployment efficiency index as an optimization target, and constructing a multi-target optimization model according to honey point information; and obtaining a Pareto optimal deployment scheme of the honey spots according to the multi-objective optimization model. According to the method, the utilization rate of defense resources can be improved, the maximum protection effectiveness of key areas, core attack paths and high-risk vulnerability nodes is realized, and the method can be widely applied to the technical field of network security.
Owner:GUANGZHOU UNIVERSITY

Reverse restoration method and device for confusion program, medium and product

The invention discloses a reverse restoration method and device for a confusion program, a medium and a product, and relates to the technical field of anti-confusion and financial science and tech, and the method comprises the steps: obtaining a target confusion program, sequentially detecting and restoring Boolean value operation, a confusion character string array, a confusion attribute name and indirect function confusion call existing in the target confusion program. Obtaining a first reverse reduction program; detecting redundant codes in the first reverse reduction program through static analysis and dynamic analysis, and removing the detected redundant codes in the first reverse reduction program to obtain a second reverse reduction program; and performing control flow flattening reverse restoration processing on the second reverse restoration program to obtain a target reverse restoration program corresponding to the target obfuscation program, and restoring the original execution path of the code, thereby solving the problem of vulnerability concealment caused by code obfuscation, enhancing the high-risk vulnerability detection rate and the attack surface coverage capability, and improving the security of the high-risk vulnerability. And the reliability and the effectiveness of depth reversal of the target confusion program are improved.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Video monitoring vulnerability detection method and device based on knowledge graph, and medium

The invention relates to the technical field of vulnerability detection, in particular to a video monitoring vulnerability detection method and device based on a knowledge graph and a medium, and the method comprises the steps: constructing a vulnerability knowledge graph according to vulnerability information corresponding to a preset monitoring device operation log, and updating a target weight matrix of a local graph neural network model of preset monitoring equipment based on a model weight matrix issued by a given cloud server, inputting the vulnerability knowledge graph into the updated graph neural network model, outputting a vulnerability anomaly score corresponding to the running log, and if the vulnerability anomaly score is greater than a preset score threshold, determining that the running log is abnormal. Determining that the corresponding preset monitoring equipment has a video monitoring vulnerability abnormity, and switching local standby monitoring equipment of the preset monitoring equipment at the same time; according to the method, the local model is lighter, meanwhile, the vulnerability detection accuracy of the local model is improved, and high-risk vulnerabilities can be found in time.
Owner:THE THIRD RES INST OF MIN OF PUBLIC SECURITY

Network space security vulnerability assessment method and device, equipment and medium

The invention relates to a cyberspace security vulnerability assessment method and device, equipment and a medium. The method comprises the following steps: acquiring multi-modal real-time access data, and constructing a multi-modal real-time access vector based on the multi-modal real-time access data; inputting the multi-modal real-time access vector into a multi-modal data migration reconstruction model to generate a multi-modal reconstruction access vector; calculating an access data migration reconstruction error based on the multi-modal real-time access vector and the multi-modal reconstruction access vector; obtaining a preset access data migration reconstruction threshold value, and performing access behavior state judgment to obtain an access behavior state judgment result; and if the access behavior state judgment result is that the access behavior is abnormal, obtaining an access behavior subject permission level and an access resource sensitivity level corresponding to the multi-mode real-time access data, and generating a security vulnerability assessment result. By adopting the method, a high-risk vulnerability scene can be accurately positioned, high-risk vulnerabilities are preferentially identified and handled, and the vulnerability handling efficiency and pertinence are improved.
Owner:陈梓欣

Building construction key node risk vulnerability assessment system and early warning method

The invention provides a building construction key node risk vulnerability assessment system and an early warning method. The system comprises a data acquisition layer, a multi-modal fusion layer, a dynamic evaluation layer and an early warning decision-making layer. The data acquisition layer acquires dynamic load, environmental parameters and structural deformation data in real time; extracting material strength, design load threshold design parameters, construction progress plans and component attributes in the BI model through an API interface, and providing static reference data; the multi-modal fusion layer carries out data alignment and space-time calibration on sensor data and a BIM model through edge calculation; the dynamic evaluation layer comprises knowledge graph construction, dynamic reasoning and node vulnerability weight calculation through a graph neural network, and the knowledge graph construction comprises a knowledge graph of risk factors, association rules and countermeasures; and the early warning decision-making layer dynamically updates an early warning threshold value through Bayesian optimization based on the foundation, subject, decoration and historical data of the construction stage, so that false alarm and / or missing alarm caused by a fixed threshold value are / is avoided.
Owner:SHANGHAI CONSTRUCTION GROUP CO LTD

An AI-based application code vulnerability detection and repair method in a low-code platform

The application relates to an AI-based application code vulnerability detection and repair method in a low-code platform, and the application comprises the following steps: collecting and aligning multi-modal context signals, generating a business intention anchor vector by using a lightweight intention encoder, fusing vulnerability features through cross-modal attention, searching a dynamic template library, and constructing an intention constraint repair space; a three-element utility function is used to realize multi-objective trade-off of safety, continuity and business intention; finally, a repair suggestion code and an explanation text consistent with the business constraint are output, and the intention understanding capability is optimized through user feedback loop. The application can significantly improve the script security and business continuity of the low-code platform, automatically generate vulnerability repair suggestions consistent with the business intention of the developer, promote the dynamic improvement of the self-adaptation capability of the platform, and significantly reduce the risk of unintended behavior caused by automatic modification while ensuring the effective elimination of high-risk vulnerabilities.
Owner:GUANGZHOU ZHUORUI DIGITAL TECHNOLOGY CO LTD

Wind-resistant safety guarantee method for segmented hoisting of stiffening girder of large-span offshore suspension bridge

This invention discloses a method for ensuring wind resistance safety during the segmented hoisting of stiffening girders for long-span suspension bridges at sea. It relates to the field of wind resistance technology for hoisting, including pre-construction measures based on bridge design parameters and construction organization plans. By establishing a wind resistance safety assurance system, and in actual use, creating a digital twin model covering the entire construction process and conducting multi-condition simulations in advance, this method can identify wind-induced risk vulnerabilities at each stage from hoisting to closure, transforming passive response into proactive anticipation. This greatly ensures the safety of personnel, equipment, and the structure. Simultaneously, refined management reduces unnecessary work stoppages, helps seize construction windows during limited typhoon breaks, shortens the overall construction period, facilitates real-time monitoring of each stage, and allows for the management, visualization, and storage of wind resistance safety assurance data and corresponding analysis results. Furthermore, it facilitates wind resistance safety assurance management through internet cloud control, improving the level of intelligence in wind resistance safety assurance management.
Owner:XIAMEN UNIV OF TECH

A ship cyber security protection system and method

The application provides a kind of ship network security protection system and method, it is related to ship network security technical field, the system includes storage module, detection management module, selection module and auditing and output module, the ship network security protection system and method provided by the application adopt double confirmation mechanism, the access or change of ship network key parameters is confirmed twice using automated vulnerability scanning tool, additional confirmation step and security requirement are increased, the defense capability of system to potential security threat is significantly improved, it is helpful to prevent hacker or malicious user from executing illegal operation by forging identity or exploiting system vulnerability, so as to protect the safe and stable operation of ship network system, and adopt priority sequencing rule, improve vulnerability processing efficiency, and high-risk vulnerability is processed preferentially to help reduce the exposure of system, reduce the possibility of being attacked by attacker, to improve the overall security of system, protect critical data and business from being violated.
Owner:SHANGHAI ZHONGCHUAN SDT-NERC CO LTD

A method for verifying penetration test results by comparing them with vulnerability databases

This invention relates to the field of network testing technology and discloses a method for comparing and verifying penetration test results with a vulnerability database. The method includes the following steps: performing attack chain topology analysis on the original penetration test results, extracting each attack node and the path dependencies between nodes, and constructing a directed acyclic graph (DAG) of the attack chain; for each attack node in the DAG, retrieving a set of hit candidates from the vulnerability database using a three-layer progressive comparison method. The purpose of this method is to address the problem that existing comparison and verification methods forcibly decompose penetration test results into discrete vulnerability entries, severing the real node path dependencies and attack chain topology. This results in an inability to accurately quantify the actual threat of vulnerabilities in the actual attack path by combining real-world environmental conditions and topological locations, leading to the underestimation of high-risk vulnerabilities on critical paths and inaccurate remediation priorities.
Owner:WUHAN YULIAN INFORMATION TECH CO LTD

Ship network security protection system and method

The invention provides a ship network security protection system and method, and relates to the technical field of ship network security, and the system comprises a storage module, a detection management module, a selection module and an auditing and outputting module. An automatic vulnerability scanning tool is used for carrying out secondary confirmation on access or change of ship network key parameters, additional confirmation steps and security requirements are added, the defense capability of the system for potential security threats is remarkably improved, hackers or malicious users can be prevented from executing illegal operations by counterfeiting identities or utilizing system vulnerabilities, and the safety of the system is improved. Therefore, safe and stable operation of the ship network system is protected, a priority ranking rule is adopted, vulnerability processing efficiency is improved, high-risk vulnerabilities are processed preferentially, the exposed surface of the system is reduced, the possibility of being used by attackers is reduced, the overall safety of the system is improved, and key data and services are protected from being damaged.
Owner:SHANGHAI ZHONGCHUAN SDT-NERC CO LTD

A code-level security vulnerability detection method, an electronic device, and a storage medium

The application relates to the technical field of vulnerability detection, in particular to a code-level security vulnerability detection method, an electronic device and a storage medium. The method comprises the following steps: acquiring a logic graph corresponding to target code, wherein the logic graph comprises role nodes, business entity nodes, operation edges and access constraint edges; acquiring an application scenario label of the target code according to the logic graph; inputting the target code into an AST parser to acquire a syntax tree corresponding to the target code; acquiring a sensitive function library B and an inhibition function library C matched with the target code according to the application scenario label of the target code; and judging whether the target code has a security vulnerability according to the B, the C and the syntax tree corresponding to the target code. The application can effectively identify an overreach risk vulnerability existing in program code.
Owner:QINGDAO WANDAO (BEIJING) INFORMATION TECH CO LTD

A method and system for full-link penetration testing of critical grid equipment

The application provides a kind of full-link penetration test method and system of power grid key equipment, it is related to electric power information security technical field.The method comprises: the layered analysis of the network link of power grid key equipment is carried out to the network security of equipment, determines the potential threat source of each network level corresponding key equipment;Based on the potential threat source, call the pre-constructed full-link vulnerability module resource pool to carry out the full-link penetration test of power grid key equipment;Each network level includes master station layer, communication layer and terminal layer;The full-link vulnerability module resource pool is obtained by modular encapsulation of the vulnerability exploit chain information formed between each network level by high-risk vulnerability module;High-risk vulnerability module is screened out based on the modular penetration test of different services on each network level corresponding key equipment.The application solves the problem that the existing security vulnerability mining has insufficient detection capability and incomplete vulnerability mining when facing new network attacks.
Owner:CHINA ELECTRIC POWER RESEARCH INSTITUTE CO LTD

A large model security vulnerability detection method based on multi-agent reinforcement learning

The application discloses a kind of big model security vulnerability detection methods based on multi-agent reinforcement learning, it is related to artificial intelligence security technical field.The detection method includes: constructing initial prompt word set, prompt word generation agent and prompt word discrimination agent;Select initial prompt word input prompt word generation agent, the new prompt word generated is input target big model, and first model output is obtained;New prompt word and first model output are input prompt word discrimination agent to form key-value pair, obtain the comprehensive score of new prompt word, and new prompt word is added to initial prompt word set;Repeat updating initial prompt word set, obtain the optimized prompt word set input target big model, and second model output is obtained;Sensitive information identification is carried out to second model output, and the security vulnerability of target big model is judged.The detection method can effectively find the potential security risk vulnerability of big model, help to improve the security of target big model.
Owner:SICHUAN UNIV