首页> 外国专利> ABNORMALITY LOG DETECTING DEVICE, ABNORMALITY LOG DETECTING METHOD, AND PROGRAM

ABNORMALITY LOG DETECTING DEVICE, ABNORMALITY LOG DETECTING METHOD, AND PROGRAM

机译:异常日志检测装置,异常日志检测方法及程序

摘要

To detect an abnormal log by a malicious program without depending on a detection pattern based on attack pattern information as in the prior art. An abnormality log detection unit (101) extracts an abnormality log based on the feature amounts of each session extracted by the feature amount extraction unit (112). Since unsupervised learning is used in this abnormal log extraction, it becomes possible to detect an abnormal log due to a malicious program without depending on a detection pattern based on attack pattern information as in the prior art. Furthermore, since the false detection log is excluded using supervised learning, the possibility of false detection can be reduced. [Selected figure] Figure 2
机译:如现有技术中那样,在不依赖基于攻击模式信息的检测模式的情况下,通过恶意程序来检测异常日志。异常日志检测单元(101)基于特征量提取单元(112)提取的每个会话的特征量来提取异常日志。由于在该异常日志提取中使用了无监督学习,所以与现有技术一样,可以不依赖基于攻击模式信息的检测模式来检测由于恶意程序引起的异常日志。此外,由于使用监督学习排除了错误检测日志,因此可以减少错误检测的可能性。 [选定图]图2

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号