首页> 外国专利> METHOD OF EXTRACTING WEB ATTACK PATTERN BASED ON INSTRUCTION OF MACHINE LEARNING TARGET SYSTEM AND GENERATING RECONSTRUCTED PAYLOAD DATA, AND PREPROCESSOR USING SAME

METHOD OF EXTRACTING WEB ATTACK PATTERN BASED ON INSTRUCTION OF MACHINE LEARNING TARGET SYSTEM AND GENERATING RECONSTRUCTED PAYLOAD DATA, AND PREPROCESSOR USING SAME

机译:基于机器学习目标系统指令并生成重构的有效载荷数据的Web攻击模式提取方法以及使用该方法的预处理器

摘要

Disclosed is a method of extracting a web attack pattern based on an instruction of a machine learning target system and generating reconstructed payload data comprising the steps of: (a) when payload data is obtained, performing, by a preprocessor, a process of talking to at least a part of characters, special characters, and numbers included in the payload data based on the special characters; (b) performing, by the preprocessor, a process of selecting a plurality of specific character groups each constituting a plurality of commands corresponding to a specific web attack type stored in a database; (c) performing, by the preprocessor, processes of (i) determining whether the plurality of specific character groups corresponds to each component constituting a specific command combination of the specific web attack type, and substituting each of the plurality of specific character groups with each specific first character representing each class corresponding thereto if the plurality of specific character groups correspond to each component constituting the specific command combination of the specific web attack type, and (ii) removing the plurality of specific character groups and the rest of the special characters from the payload data; and (d) performing, by the preprocessor, a process of substituting each specific first character and the special character with a real number or a second character corresponding to the real number to generate reconstructed payload data.;COPYRIGHT KIPO 2020
机译:公开了一种基于机器学习目标系统的指令提取网络攻击模式并生成重构的有效载荷数据的方法,该方法包括以下步骤:(a)当获得有效载荷数据时,由预处理器执行与之对话的过程。基于特殊字符,净荷数据中包括的至少一部分字符,特殊字符和数字; (b)通过预处理器执行选择多个特定字符组的处理,每个特定字符组构成与存储在数据库中的特定网络攻击类型相对应的多个命令; (c)由预处理器执行以下处理:(i)确定多个特定字符组是否与构成特定网络攻击类型的特定命令组合的每个组件相对应,并分别用多个特定字符组替换每个特定字符组。如果多个特定字符组与构成特定Web攻击类型的特定命令组合的每个组件相对应,则表示对应于每个类别的特定第一字符,并且(ii)从多个特定字符组和其余特殊字符中删除有效载荷数据; (d)通过预处理器执行以下过程:用实数或对应于实数的第二个字符替换每个特定的第一字符和特殊字符,以生成重构的有效载荷数据。COPYRIGHT KIPO 2020

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号