首页> 外国专利> Detecting network anomalies by probabilistic modeling of argument strings with markov chains

Detecting network anomalies by probabilistic modeling of argument strings with markov chains

机译:通过使用Markov链对参数字符串进行概率建模来检测网络异常

摘要

Systems, methods, and media for detecting network anomalies are provided. In some embodiments, a training dataset of communication protocol messages having argument strings is received. The content and structure associated with each of the argument strings is determined and a probabilistic model is trained using the determined content and structure of each of the argument strings. A communication protocol message having an argument string that is transmitted from a first processor to a second processor across a computer network is received. The received communication protocol message is compared to the probabilistic model and then it is determined whether the communication protocol message is anomalous.
机译:提供了用于检测网络异常的系统,方法和介质。在一些实施例中,接收具有自变量字符串的通信协议消息的训练数据集。确定与每个自变量字符串相关联的内容和结构,并使用所确定的每个自变量字符串中内容和结构来训练概率模型。接收具有自变量字符串的通信协议消息,该自变量字符串通过计算机网络从第一处理器传输到第二处理器。将接收到的通信协议消息与概率模型进行比较,然后确定通信协议消息是否异常。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号