首页> 外国专利> A METHOD FOR CLASSIFYING ATTACK SOURCES IN CYBER-ATTACK SENSOR SYSTEMS

A METHOD FOR CLASSIFYING ATTACK SOURCES IN CYBER-ATTACK SENSOR SYSTEMS

机译:网络攻击传感器系统中攻击源分类方法

摘要

A system for classifying sources of cyber-attacks in attack-sensor systems by analyzing attack metadata, comprising at least one processor adapted to obtain metadata from data regarding attacks in the form of access operations to the system, which is monitored by one or more sensors deployed within the sensor-based system; filter portions of data from the metadata for reaching a desirable dataset for modeling; create attack sessions that aggregate the atomic attacks per each attacker; extract statistical features for a learning phase; label attack sessions with an appropriate source attack label; generate a class modeler based on the extracted features and the labels; and store the class modeler in a memory.
机译:一种用于通过分析攻击元数据来对攻击传感器系统中的网络攻击源进行分类的系统,包括至少一个处理器,该至少一个处理器适于从与攻击有关的数据中获取元数据,该数据以对系统的访问操作的形式被一个或多个传感器监控部署在基于传感器的系统中;从元数据中过滤数据的一部分,以达到所需的建模数据集;创建攻击会话以汇总每个攻击者的原子攻击;提取学习阶段的统计特征;用适当的源攻击标签标记攻击会话;根据提取的特征和标签生成类建模器;并将类建模器存储在内存中。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号