首页> 外国专利> METHODS AND APPARATUS TO AUTOMATE CYBER DEFENSE DECISION PROCESS AND RESPONSE ACTIONS BY OPERATIONALIZING ADVERSARIAL TECHNIQUE FRAMEWORKS

METHODS AND APPARATUS TO AUTOMATE CYBER DEFENSE DECISION PROCESS AND RESPONSE ACTIONS BY OPERATIONALIZING ADVERSARIAL TECHNIQUE FRAMEWORKS

机译:通过实施对抗性技术框架,自动化网络防御决策过程和响应行动的方法和装置

摘要

In some embodiments, a method can include identifying detection coverage of a set of adversarial techniques based on telemetry data and a detection instance of an environment. The method can further include determining a subset of detection coverage that has a metric value below a metric value threshold and among the detection coverage for the set of adversarial techniques. The method may further include identifying at least one detection instance associated with the subset of detection coverage. The method can further include presenting, via a graphical user interface, a representation of at least one of the subset of detection coverage or the at least one detection instance associated with the subset of detection coverage. The method can further include updating the subset of detection coverage based on the telemetry data, the detection instance, or the at least one detection instance to improve the metric value.
机译:在一些实施例中,一种方法可以包括基于遥测数据和环境的检测实例来识别一组对抗性技术的检测覆盖范围。该方法还可以包括确定检测覆盖的子集,该子集具有低于度量值阈值的度量值,并且在对抗性技术集合的检测覆盖范围中。该方法还可以包括识别与检测覆盖的子集相关联的至少一个检测实例。该方法还可以包括经由图形用户界面呈现检测覆盖子集中的至少一个或与检测覆盖子集相关联的至少一个检测实例的表示。该方法还可以包括基于遥测数据、检测实例或至少一个检测实例更新检测覆盖的子集,以改进度量值。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号