首页> 外国专利> CLUSTER-BASED PRECISION MITIGATION OF NETWORK ATTACKS

CLUSTER-BASED PRECISION MITIGATION OF NETWORK ATTACKS

机译:基于集群的网络攻击精确缓解

摘要

Provided are methods and systems for cluster-based mitigation of a network attack. A method for cluster-based mitigation of a network attack may commence with detecting an unusual pattern in network data traffic associated with data sources. The method may further include extracting signature parameters associated with the network data traffic. The signature parameters may be indicative of the network attack. The method may continue with assigning importance weights to the signature parameters based on historical signature data to generate weighted signature parameters. The method may further include building a decision tree for the data sources based on the weighted signature parameters. The method may continue with creating an optimal number of clusters for the data sources based on an analysis of the decision tree. The method may further include selectively taking at least one mitigating action with regard to the data sources within the clusters.
机译:提供了用于基于集群的缓解网络攻击的方法和系统。一种用于基于群集的缓解网络攻击的方法可以从检测与数据源关联的网络数据流量中的异常模式开始。该方法可以进一步包括提取与网络数据业务相关联的签名参数。签名参数可以指示网络攻击。该方法可以继续基于历史签名数据将重要性权重分配给签名参数以生成加权的签名参数。该方法可以进一步包括基于加权签名参数为数据源建立决策树。该方法可以继续基于决策树的分析为数据源创建最佳数目的聚类。该方法可以进一步包括针对集群内的数据源选择性地采取至少一种缓解动作。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号