Service Request Interception via Dynamic Key Service Node Selection
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing Internet platforms face challenges in accurately intercepting unauthorized service requests due to attackers modifying parameters to bypass fixed interception nodes, leading to poor interception efficiency and low accuracy.
Innovation Solution
A method and apparatus that identify a key service node with the best interception effect for each target account, dynamically allocating computing resources to enhance interception efficiency and accuracy by evaluating interception gains at different service nodes.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a fixed rule audit mode is used to intercept unauthorized requests, then the platform can implement basic security control, but the interception accuracy deteriorates as attackers modify parameters to bypass fixed nodes
Solution Approach 1:
The patent applies dynamics by transitioning from a fixed rule audit mode to a dynamic evaluation mechanism. The system dynamically determines the key service node for each target account based on real-time interception effect assessment, allowing the interception strategy to adapt to attacker parameter modifications and bypass attempts, thereby resolving the contradiction between fixed security control and adaptive evasion capabilities
Solution Approach 2:
The patent changes the parameter of interception evaluation from static fixed rules to dynamic interception effect metrics. By evaluating interception effects based on actual attack behavior and modifying the key service node selection parameters accordingly, the system maintains high interception accuracy while adapting to attacker strategies, thus resolving the contradiction between reliability and adaptability
2Reliability
If access interception is performed at all service nodes, then comprehensive coverage is achieved, but computing resource consumption increases
Solution Approach 1:
The patent extracts the essential interception function from all service nodes and concentrates it at the dynamically determined key service node. By identifying and focusing interception resources at the most critical node for each target account, the system maintains comprehensive interception coverage while significantly reducing overall computing resource consumption compared to intercepting at all nodes
Solution Approach 2:
The patent applies local quality by tailoring the interception strategy to the specific characteristics of each target account and its corresponding key service node. Instead of uniform interception across all nodes, the system concentrates resources locally at the most effective node for each account, optimizing the balance between coverage and resource consumption
Data Source
AI summary
Embodiments of the present disclosure provide a method, apparatus, electronic device and a storage medium for service request processing, by obtaining a target account that is an account having a risk of initiating an unauthorized request to a target service, the target service having at least two service nodes; determining, based on the target account, a corresponding key service node, the key service node being a service node that has a best interception effect for performing access interception on an unauthorized request initiated by the target account; performing, based on the key service node, access interception on a service request sent by the target account. By evaluating the key service node with better interception effect in the target service, then at the key service node, an access interception is performed on the unauthorized request initiated by the target account.


