首页> 外国专利> SUSPICIOUS PACKET DETECTION DEVICE AND SUSPICIOUS PACKET DETECTION METHOD THEREOF

SUSPICIOUS PACKET DETECTION DEVICE AND SUSPICIOUS PACKET DETECTION METHOD THEREOF

机译:疑似包检测装置及其疑似包检测方法

摘要

A suspicious packet detection device and a suspicious packet detection method thereof are provided. The suspicious packet detection device captures an HTTP packet transmitted from an internal network to an external network, and based on an HTTP header of the HTTP packet, determines that the HTTP packet belongs to one of a browser category and an application category and identifies the HTTP packet as one of a normal packet and a suspicious packet. When the HTTP packet is identified as the normal packet, the suspicious packet detection device further verifies whether the HTTP packet is the suspicious packet or not by comparing the HTTP header with relevance information or by using a URL classification model.
机译:提供了一种可疑包检测装置及其可疑包检测方法。可疑数据包检测设备捕获从内部网络传输到外部网络的HTTP数据包,并基于HTTP数据包的HTTP标头确定该HTTP数据包属于浏览器类别和应用程序类别之一,并标识HTTP普通数据包和可疑数据包之一。当HTTP分组被识别为正常分组时,可疑分组检测设备通过将HTTP报头与相关信息进行比较或者通过使用URL分类模型来进一步验证HTTP分组是否为可疑分组。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号