首页> 外国专利> IDENTIFYING AND CLASSIFYING COMMUNITY ATTACKS

IDENTIFYING AND CLASSIFYING COMMUNITY ATTACKS

机译:识别和分类社区攻击

摘要

A method by one or more electronic devices for identifying and classifying community attacks. The method includes determining, for each of a plurality of enterprise networks, one or more incidents occurring in that enterprise network based on analyzing security alerts generated by a web application layer attack detector used to protect a web application hosted in that enterprise network, where each incident represents a group of security alerts that have been determined as being associated with the same security event, grouping incidents occurring across the plurality of enterprise networks into groups of incidents, where incidents that are determined as having similar features are grouped into the same group of incidents, and classifying each of one or more of the groups of incidents as being an industry-based attack or a spray-and-pray attack based on industry classifications of incidents within that group of incidents.
机译:一个或多个电子设备用于识别和分类社区攻击的方法。该方法包括针对多个企业网络中的每个企业网络,通过分析由用于保护该企业网络中托管的Web应用程序的Web应用程序层攻击检测器生成的安全警报,确定在该企业网络中发生的一个或多个事件,其中每个事件表示已被确定为与同一安全事件相关联的一组安全警报,它将在多个企业网络中发生的事件分组为事件组,其中确定为具有相似特征的事件被分组为同一组事件。事件,并将事件组中的一个或多个事件中的每一个分类为基于行业的攻击或基于该事件组中事件的行业分类的“纵火式”攻击。

著录项

  • 公开/公告号US2020259861A1

    专利类型

  • 公开/公告日2020-08-13

    原文格式PDF

  • 申请/专利权人 IMPERVA INC.;

    申请/专利号US201916730926

  • 发明设计人 SHIRI MARGEL;AMIT LEIBOVITZ;

    申请日2019-12-30

  • 分类号H04L29/06;H04L12/24;

  • 国家 US

  • 入库时间 2022-08-21 11:25:50

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号