首页> 外国专利> ALERTING AND TAGGING USING A MALWARE ANALYSIS PLATFORM FOR THREAT INTELLIGENCE MADE ACTIONABLE

ALERTING AND TAGGING USING A MALWARE ANALYSIS PLATFORM FOR THREAT INTELLIGENCE MADE ACTIONABLE

机译:使用恶意软件分析平台发出警报并进行标记,以使威胁情报切实可行

摘要

Techniques for alerting and tagging using a malware analysis platform for threat intelligence made actionable are disclosed. In some embodiments, a system, process, and/or computer program product for alerting and tagging using a malware analysis platform for threat intelligence made actionable includes receiving a plurality of samples for performing automated malware analysis to generate log files based on the automated malware analysis; processing the log files to extract artifacts associated with the log files; determining whether a tag matches any of the plurality of samples based on the artifacts; and performing an action based on whether the tag matches any of the plurality of samples.
机译:公开了使用恶意软件分析平台来进行警报和标记的技术,以使威胁情报可付诸实施。在一些实施例中,用于使用恶意软件分析平台进行警报和标记以使威胁情报变为可操作的系统,过程和/或计算机程序产品包括:接收多个样本,以执行自动化恶意软件分析以基于自动化恶意软件分析来生成日志文件。 ;处理日志文件以提取与日志文件关联的工件;基于伪像确定标签是否与多个样本中的任何一个匹配;根据标签是否与多个样本中的任何一个匹配来执行动作。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号