首页> 外国专利> USING BEHAVIOR-BASED ANALYSIS TECHNIQUES FOR ADVANCED PERSISTENT THREAT ATTACK DETECTION AND RESPONSE SYSTEM AND METHOD FOR THEREOF

USING BEHAVIOR-BASED ANALYSIS TECHNIQUES FOR ADVANCED PERSISTENT THREAT ATTACK DETECTION AND RESPONSE SYSTEM AND METHOD FOR THEREOF

机译:使用基于行为的分析技术进行高级持续威胁攻击检测和响应系统及其方法

摘要

The intelligent continuous attack detection and response system using the behavior-based analysis technique according to the embodiment of the present invention includes a function audit module that supports operation management and audit of the entire module, and a target scope of the system state audit, The audit policy module that manages the policy, and the scope of the audit target defined by the audit policy module, performs the audit of the status of the audit object, determines the validity of the attack when the audit event is detected, And an audit violation response module for receiving the attack analysis result from the system state audit module to derive a countermeasure for matching the attack, and implementing the countermeasure.
机译:根据本发明实施例的使用基于行为的分析技术的智能连续攻击检测和响应系统包括:功能审计模块,其支持操作管理和整个模块的审计;以及系统状态审计的目标范围;管理策略的审核策略模块,以及由审核策略模块定义的审核目标的范围,对审核对象的状态进行审核,在检测到审核事件时确定攻击的有效性,以及审核违规响应模块,用于从系统状态审计模块接收攻击分析结果,以得出与攻击匹配的对策,并实施对策。

著录项

  • 公开/公告号KR101560534B1

    专利类型

  • 公开/公告日2015-10-16

    原文格式PDF

  • 申请/专利权人 주식회사 윈스;

    申请/专利号KR20130168870

  • 发明设计人 지정호;김동춘;

    申请日2013-12-31

  • 分类号G06F21/55;

  • 国家 KR

  • 入库时间 2022-08-21 14:57:33

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号