首页> 外国专利> METHOD AND SYSTEM FOR DETECTING LATERAL MOVEMENT IN ENTERPRISE COMPUTER NETWORKS

METHOD AND SYSTEM FOR DETECTING LATERAL MOVEMENT IN ENTERPRISE COMPUTER NETWORKS

机译:检测企业计算机网络中横向运动的方法和系统

摘要

A system includes a log receiving module, an authentication graph module, a sampling module, an embedding module, a training module, a link prediction module, and an anomaly detection module. The log receiving module is configured to receive a first plurality of network-level authentication logs. The authentication graph module is configured to generate an authentication graph. The sampling module is configured to generate a plurality of sequences. The embedding module is configured to tune a plurality of node embeddings according to the plurality of sequences. The training module is configured to train a link predictor according to the plurality of node embeddings and ground-truth edge information from the authentication graph. The link prediction module is configured to apply the link predictor to performs a link prediction. The anomaly detection module is configured to perform anomaly detection according to the link prediction.
机译:系统包括日志接收模块,认证图模块,采样模块,嵌入模块,训练模块,链路预测模块和异常检测模块。日志接收模块被配置为接收第一多个网络级认证日志。认证图模块被配置为生成认证图。采样模块被配置为生成多个序列。嵌入模块被配置为根据多个序列调谐多个节点嵌入。训练模块被配置为根据来自认证图的多个节点嵌入和地面真实边缘信息训练链路预测器。链路预测模块被配置为应用链路预测器来执行链路预测。异常检测模块被配置为根据链路预测执行异常检测。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号