首页> 外国专利> NETWORK SPACE SECURITY THREAT DETECTION METHOD AND SYSTEM BASED ON HETEROGENEOUS GRAPH EMBEDDING

NETWORK SPACE SECURITY THREAT DETECTION METHOD AND SYSTEM BASED ON HETEROGENEOUS GRAPH EMBEDDING

机译:基于异构图嵌入的网络空间安全威胁检测方法和系统

摘要

The embodiments of the present application provide a network space security threat detection method and system based on heterogeneous graph embedding, comprising: obtaining entity behavior data; associating all data items in the entity behavior data according to a meta-attribute association relationship to obtain a data item sequence, and constructing a heterogeneous graph on the basis of the data item sequence; converting each node in the heterogeneous graph into a low-dimensional vector on the basis of a graph embedding learning method, to obtain vectorized expression of each node; and analyzing the features of the vectorized expression to determine whether the data item corresponding to the vectorized expression is a malicious behavior. According to the embodiments, a heterogeneous graph for threat detection is established, entity behavior data items are simplified and represented in a vectorized manner, and the provided data item level threat detection for network space security does not need later manual correction and does not need labeled data items as training samples, thereby effectively improving the detection precision and the detection feasibility.
机译:本申请的实施例提供了一种基于异构图形嵌入的网络空间安全威胁检测方法和系统,包括:获取实体行为数据;根据元属性关联关系将实体行为数据中的所有数据项相关联,以获得数据项序列,并基于数据项序列构建异构图形;基于图形嵌入学习方法将异构图中的每个节点转换为低维向量,以获得每个节点的矢量化表达式;并分析矢量化表达式的特征,以确定对应于矢量化表达式的数据项是一种恶意行为。根据实施例,建立用于威胁检测的异构图,实体行为数据项被简化并以矢量化方式表示,并且提供的数据项级威胁检测对网络空间安全性不需要稍后的手动校正,并且不需要标记数据项作为训练样本,从而有效地提高了检测精度和检测可行性。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号