首页> 外文会议>Intelligence and Security Informatics; Lecture Notes in Computer Science; 4430 >Towards Identifying True Threat from Network Security Data
【24h】

Towards Identifying True Threat from Network Security Data

机译:旨在从网络安全数据中识别真正的威胁

获取原文
获取原文并翻译 | 示例

摘要

Among the challenges in the field of network security management, one significant problem is the increasing difficulty in identifying the security incidents which pose true threat to the protected network system from tremendous volume of raw security alerts. This paper presents our work on integrated management of network security data for true threat identification within the SATA (Security Alert and Threat Analysis) project. An algorithm for real-time threat analysis of security alerts is presented. Early experiments performed in a branch network of CER.NET (China Education and Research Network) including an attack testing sub-network have shown that the system can effectively identify true threats from various security alerts.
机译:在网络安全管理领域中的挑战中,一个重要的问题是识别安全事件的难度越来越大,而安全事件会因大量原始安全警报而对受保护的网络系统构成真正的威胁。本文介绍了我们在SATA(安全警报和威胁分析)项目中对网络安全数据进行集成管理以真正识别威胁的工作。提出了一种安全警报实时威胁分析算法。在CER.NET(中国教育研究网络)的分支网络(包括攻击测试子网)中进行的早期实验表明,该系统可以从各种安全警报中有效识别出真正的威胁。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号