CN117220961B - 一种基于关联规则图谱的入侵检测方法、装置及存储介质 - Google Patents
一种基于关联规则图谱的入侵检测方法、装置及存储介质 Download PDFInfo
- Publication number
- CN117220961B CN117220961B CN202311220621.6A CN202311220621A CN117220961B CN 117220961 B CN117220961 B CN 117220961B CN 202311220621 A CN202311220621 A CN 202311220621A CN 117220961 B CN117220961 B CN 117220961B
- Authority
- CN
- China
- Prior art keywords
- attack
- knowledge
- rule
- graph
- att
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
Landscapes
- Data Exchanges In Wide-Area Networks (AREA)
Abstract
Description
Claims (4)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN202311220621.6A CN117220961B (zh) | 2023-09-20 | 2023-09-20 | 一种基于关联规则图谱的入侵检测方法、装置及存储介质 |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN202311220621.6A CN117220961B (zh) | 2023-09-20 | 2023-09-20 | 一种基于关联规则图谱的入侵检测方法、装置及存储介质 |
Publications (2)
Publication Number | Publication Date |
---|---|
CN117220961A CN117220961A (zh) | 2023-12-12 |
CN117220961B true CN117220961B (zh) | 2024-05-07 |
Family
ID=89049198
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN202311220621.6A Active CN117220961B (zh) | 2023-09-20 | 2023-09-20 | 一种基于关联规则图谱的入侵检测方法、装置及存储介质 |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN117220961B (zh) |
Families Citing this family (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN117978476B (zh) * | 2024-01-19 | 2024-09-20 | 长扬科技(北京)股份有限公司 | 基于att&ck知识图谱的攻击链生成方法和装置 |
Citations (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
WO2019043804A1 (ja) * | 2017-08-30 | 2019-03-07 | 日本電気株式会社 | ログ分析装置、ログ分析方法及びコンピュータ読み取り可能記録媒体 |
CN109450946A (zh) * | 2018-12-27 | 2019-03-08 | 浙江大学 | 一种基于报警关联分析的未知攻击场景检测方法 |
CN115459965A (zh) * | 2022-08-23 | 2022-12-09 | 广州大学 | 一种面向电力系统网络安全的多步攻击检测方法 |
CN116074075A (zh) * | 2023-01-09 | 2023-05-05 | 北京安博通科技股份有限公司 | 基于关联规则的安全事件关联行为分析方法、系统及设备 |
CN116112211A (zh) * | 2022-12-07 | 2023-05-12 | 珠海横琴跨境说网络科技有限公司 | 一种基于知识图谱的网络攻击链还原方法 |
CN116527288A (zh) * | 2022-01-21 | 2023-08-01 | 上海交通大学 | 基于知识图谱的网络攻击安全风险评估系统及方法 |
Family Cites Families (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
JP7255679B2 (ja) * | 2019-06-17 | 2023-04-11 | 日本電気株式会社 | 攻撃グラフ加工装置、方法およびプログラム |
-
2023
- 2023-09-20 CN CN202311220621.6A patent/CN117220961B/zh active Active
Patent Citations (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
WO2019043804A1 (ja) * | 2017-08-30 | 2019-03-07 | 日本電気株式会社 | ログ分析装置、ログ分析方法及びコンピュータ読み取り可能記録媒体 |
CN109450946A (zh) * | 2018-12-27 | 2019-03-08 | 浙江大学 | 一种基于报警关联分析的未知攻击场景检测方法 |
CN116527288A (zh) * | 2022-01-21 | 2023-08-01 | 上海交通大学 | 基于知识图谱的网络攻击安全风险评估系统及方法 |
CN115459965A (zh) * | 2022-08-23 | 2022-12-09 | 广州大学 | 一种面向电力系统网络安全的多步攻击检测方法 |
CN116112211A (zh) * | 2022-12-07 | 2023-05-12 | 珠海横琴跨境说网络科技有限公司 | 一种基于知识图谱的网络攻击链还原方法 |
CN116074075A (zh) * | 2023-01-09 | 2023-05-05 | 北京安博通科技股份有限公司 | 基于关联规则的安全事件关联行为分析方法、系统及设备 |
Also Published As
Publication number | Publication date |
---|---|
CN117220961A (zh) | 2023-12-12 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
Wang et al. | A graph based approach toward network forensics analysis | |
Gupta et al. | Layered approach using conditional random fields for intrusion detection | |
US7530105B2 (en) | Tactical and strategic attack detection and prediction | |
CN110602042B (zh) | 基于级联攻击链模型的apt攻击行为分析检测方法及装置 | |
Do Xuan et al. | A new approach for APT malware detection based on deep graph network for endpoint systems | |
CN102075516A (zh) | 一种网络多步攻击识别和预测方法 | |
CN115277127B (zh) | 基于系统溯源图搜索匹配攻击模式的攻击检测方法及装置 | |
Alserhani et al. | MARS: multi-stage attack recognition system | |
CN116451215A (zh) | 关联分析方法及相关设备 | |
Wang et al. | Building evidence graphs for network forensics analysis | |
CN117220961B (zh) | 一种基于关联规则图谱的入侵检测方法、装置及存储介质 | |
CN117375997A (zh) | 一种基于蜜点的恶意流量攻击安全知识平面构建方法 | |
Wang et al. | An end-to-end method for advanced persistent threats reconstruction in large-scale networks based on alert and log correlation | |
Agrafiotis et al. | Towards a User and Role-based Sequential Behavioural Analysis Tool for Insider Threat Detection. | |
Jaafar et al. | A systematic approach for privilege escalation prevention | |
Roy et al. | GraphCH: A Deep Framework for Assessing Cyber-Human Aspects in Insider Threat Detection | |
Elshoush et al. | Intrusion alert correlation framework: An innovative approach | |
KR102592624B1 (ko) | 사회이슈형 사이버 표적공격의 대응을 위한 인공지능 기법을 이용한 위협 헌팅 시스템 및 그 방법 | |
Rai | Behavioral threat detection: Detecting living of land techniques | |
Dadkhah et al. | Alert correlation through a multi components architecture | |
Anashkin et al. | Implementation of Behavioral Indicators in Threat Detection and User Behavior Analysis | |
Long et al. | MDATA Model Based Cyber Security Knowledge Representation and Application | |
D Harale et al. | Data mining techniques for network intrusion detection and prevention systems | |
Gupta | Robust and efficient intrusion detection systems | |
CN117560223B (zh) | 一种威胁的归因预测方法、装置、介质及电子设备 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant | ||
CB03 | Change of inventor or designer information |
Inventor after: Yu Saisai Inventor after: Liu Xiaoying Inventor after: Cui Jun Inventor after: Tan Zhen Inventor after: Liu Wei Inventor after: Wu Jisigu Inventor after: Wang Huai Inventor after: Chen Jing Inventor before: Yu Saisai Inventor before: Liu Xiaoying Inventor before: Cui Jun Inventor before: Su Qianye Inventor before: Tan Zhen Inventor before: Liu Wei Inventor before: Wu Jisigu Inventor before: Wang Huai Inventor before: Chen Jing |