首页> 外国专利> GRAPH PRIORITIZATION FOR IMPROVING PRECISION OF THREAT PROPAGATION ALGORITHMS

GRAPH PRIORITIZATION FOR IMPROVING PRECISION OF THREAT PROPAGATION ALGORITHMS

机译:图形优先级可提高威胁传播算法的精度

摘要

Systems described herein preemptively detect newly registered network domains that are likely to be malicious before network behavior of the domains is actually observed. A network security device (e.g., a router) receives domain registration data that associates network domains with keys and generating a graph representing the domain registration data. Each edge of the graph connects a vertex representing a domain and a vertex representing a registration attribute (e.g., a registrant email address). The network security device identifies a connected component of the graph that meets a graph robustness threshold. The network security device determines whether a domain of the connected component whose behavior has not yet been observed is malicious using a predictive model based on existing maliciousness labels for other domains of the connected component.
机译:本文所述的系统在实际观察到域的网络行为之前先占地检测了可能是恶意的新注册的网络域。网络安全设备(例如,路由器)接收将网络域与密钥相关联的域注册数据,并生成表示域注册数据的图。图的每个边缘连接代表域的顶点和代表注册属性(例如,注册者电子邮件地址)的顶点。网络安全设备标识满足图鲁棒性阈值的图的已连接组件。网络安全设备基于连接的组件的其他域的现有恶意标签,使用预测模型确定尚未观察到其行为的连接的组件的域是否为恶意。

著录项

  • 公开/公告号US2018198805A1

    专利类型

  • 公开/公告日2018-07-12

    原文格式PDF

  • 申请/专利权人 CISCO TECHNOLOGY INC.;

    申请/专利号US201715400389

  • 发明设计人 MARTIN VEJMAN;LUKAS MACHLICA;

    申请日2017-01-06

  • 分类号H04L29/06;G06N5/04;G06N7;G06N99;

  • 国家 US

  • 入库时间 2022-08-21 13:01:12

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号