首页> 外国专利> Security management system and security management method

Security management system and security management method

机译:安全管理体系和安全管理方法

摘要

PROBLEM TO BE SOLVED: To efficiently and surely detect a security breach by effectively utilizing information acquired from various information sources. A security management system extracts IoC information from security intelligence acquired from an information provider, assigns attribute labels to the IoC information, and identifies the relationship between a plurality of IoC information based on each attribute label. , IoC information was extracted from the log information acquired from the security breach monitoring target, the extracted IoC information was given an attribute label to generate an analysis target, and it was extracted based on the security intelligence newly acquired from the information provider. Acquires other related IoC information about new IoC information, generates a query to be used for searching the analysis target based on each of the new IoC information and other IoC information, and searches the analysis target using the generated query. , Analyze the presence or absence of security breaches based on search results. [Selection diagram] Fig. 1
机译:需要解决的问题:通过有效利用从各种信息源获取的信息,高效、可靠地检测安全漏洞。安全管理系统从从信息提供者获取的安全情报中提取IoC信息,为IoC信息分配属性标签,并基于每个属性标签识别多个IoC信息之间的关系,从从安全漏洞监控目标获取的日志信息中提取IoC信息,将提取的IoC信息赋予属性标签以生成分析目标,并根据从信息提供者新获取的安全情报进行提取。获取有关新IoC信息的其他相关IoC信息,根据每个新IoC信息和其他IoC信息生成用于搜索分析目标的查询,并使用生成的查询搜索分析目标,根据搜索结果分析是否存在安全漏洞。[选择图]图1

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号