Processing Control Apparatus for Cybersecurity Risk Summation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing unauthorized access detection systems in communication networks face challenges in accurately detecting unauthorized access, leading to low cybersecurity reliability due to reliance on command string analysis alone.
Innovation Solution
A processing control apparatus and method that calculates a risk value for processing information over a certain period and restricts processing when the calculated value meets a predetermined condition, enhancing the detection and response to unauthorized access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Measurement precision
If unauthorized access detection is based on command string analysis alone, then the detection system is simple to implement, but the detection accuracy is low
Solution Approach 1:
The patent combines multiple detection dimensions (command string analysis, access frequency monitoring, time pattern analysis, and source IP tracking) into a unified detection system. The determination unit integrates results from the command string analysis unit, access frequency analysis unit, and time pattern analysis unit to make comprehensive unauthorized access determinations, thereby improving detection accuracy while maintaining manageable system complexity through modular architecture.
Solution Approach 2:
The patent transitions from single-dimension command string analysis to multi-dimensional detection by adding temporal dimension (time patterns, access frequency) and spatial dimension (source IP addresses) to the detection process. This dimensional expansion enables the system to detect unauthorized access more accurately by analyzing patterns across multiple axes simultaneously.
2Reliability
If comprehensive processing information is monitored to improve detection accuracy, then cybersecurity reliability improves, but processing overhead increases
Solution Approach 1:
The patent applies partial monitoring by focusing detection resources on specific high-risk patterns rather than analyzing all processing information equally. The determination unit selectively triggers detailed analysis based on preliminary indicators from access frequency and time pattern analysis, examining only those access requests that exhibit suspicious characteristics. This approach maintains high cybersecurity reliability while reducing overall processing overhead by avoiding exhaustive analysis of normal traffic.
Solution Approach 2:
The patent implements differential processing where different levels of analysis depth are applied to different access requests. Normal access patterns receive minimal processing, while accesses exhibiting suspicious temporal patterns, high frequency, or matching command strings undergo comprehensive multi-unit analysis. This localized quality adjustment ensures reliable detection of threats while preserving processing throughput for legitimate operations.
Data Source
AI summary
Provided is a process control device, etc. capable of more reliably maintaining the soundness of an information processing system with regard to cybersecurity. A processing control device calculates a sum of a value indicating a risk included in processing information that includes one or more processing executed on an information processing apparatus during a certain period; and restricts processing to the information processing apparatus when the calculated sum value for the processing information satisfies a predetermined restriction condition.


