首页> 外国专利> Inferring temporal relationships for cybersecurity events

Inferring temporal relationships for cybersecurity events

机译:推断网络安全事件的时间关系

摘要

A cognitive security analytics platform is enhanced by providing a technique for automatically inferring temporal relationship data for cybersecurity events. In operation, a description of a security event is received, typically as unstructured security content or data. Information such as temporal data or cues, are extracted from the description, along with security entity and relationship data. Extracted temporal information is processing according to a set of temporal markers (heuristics) to determine a time value marker (i.e., an established time) of the security event. This processing typically involves retrieval of information from one or more structured data sources. The established time is linked to the security entities and relationships. The resulting security event, as augmented with the identified temporal data, is then subjected to a management operation.
机译:通过提供一种自动推断网络安全事件的时间关系数据的技术,增强了认知安全分析平台。在操作中,通常以非结构化安全内容或数据的形式接收安全事件的描述。从描述中提取诸如时间数据或提示之类的信息,以及安全实体和关系数据。提取的时间信息根据一组时间标记(启发式)进行处理,以确定安全事件的时间值标记(即已建立的时间)。该处理通常涉及从一个或多个结构化数据源中检索信息。建立的时间链接到安全实体​​和关系。然后,将所产生的安全事件(以所标识的时间数据进行扩充)进行管理操作。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号