首页> 外国专利> Bio-inspired agile cyber-security assurance framework

Bio-inspired agile cyber-security assurance framework

机译:受生物启发的敏捷网络安全保证框架

摘要

A framework for efficiently and automatically exploring a data network and accurately identifying network threats, which comprises a plurality of software and hardware-based agents, distributed over the data network. The agents are capable of adjusting or reconfiguring, on the fly, the behavior of the agents and their ability to collect data in a targeted manner, so as to investigate suspicious incidents and alerts and collect data that was not yet collected by the system; collecting forensic data by executing tasks defined in workflows, being distributed threat intercepting programs and reporting about the collected forensic data, back to a Central Control Unit (C&C). Distributed threat intercepting programs ("workflows") are used to provide instructions to agents, to perform branching and provide instructions to the Central Control Unit (C&C), which orchestrates the agents to assure proper execution of the workflows; analyzes the collected information and presents ongoing status to an operator supervising the data network.
机译:一种用于高效,自动探索数据网络并准确识别网络威胁的框架,该框架包括分布在数据网络上的多个基于软件和硬件的代理。代理能够即时调整或重新配置代理的行为及其有针对性地收集数据的能力,以便调查可疑事件并发出警报并收集系统尚未收集的数据;通过执行工作流中定义的任务,分发威胁拦截程序并报告有关收集的法证数据,来收集法证数据,并将其报告回中央控制单元(C&C)。分布式威胁拦截程序(“工作流”)用于向代理提供指令,执行分支并向中央控制单元(C&C)提供指令,后者负责协调代理以确保工作流的正确执行。分析收集到的信息,并将当前状态提供给监督数据网络的运营商。

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号