首页> 外国专利> Defense against APT attacks

Defense against APT attacks

机译:防御APT攻击

摘要

The present application provides a defense method and defense system against an APT attack. In the defense method, the communication data in the network is acquired, the related analysis is performed on the communication data, the threat data in the communication data is selected based on the result of the related analysis, and each selected threat data is dealt with according to the kill chain model. APT attack stages corresponding to each of the plurality of APT attack stages are protected, and the network entity related to each threat data is protected based on the defense measures corresponding to the plurality of APT attack stages. According to the present application, since the threat data is mapped to the corresponding APT attack stage and appropriate defense measures are adopted for different APT attack stages, the APT attack process is more targeted and more effective against the APT attack. Can be detected and dealt with.
机译:本申请为APT攻击提供了防御方法和防御系统。在防御方法中,获取网络中的通信数据,在通信数据上执行相关分析,基于相关分析的结果,选择通信数据中的威胁数据,并处理每个所选威胁数据根据杀戮链模型。对应于多个APT攻击级中的每一个对应的APT攻击阶段受到保护,并且基于对应于多个APT攻击阶段的防御测量来保护与每个威胁数据相关的网络实体。根据本申请,由于威胁数据被映射到相应的APT攻击阶段,并且采用了不同的APT攻击阶段采用了适当的防御措施,因此APT攻击过程更具针对性,更有效地对抗APT攻击。可以检测并处理。

著录项

  • 公开/公告号JP6894003B2

    专利类型

  • 公开/公告日2021-06-23

    原文格式PDF

  • 申请/专利权人 新華三技術有限公司;

    申请/专利号JP20190552980

  • 发明设计人 陳 友 ▲クン▼;

    申请日2018-03-23

  • 分类号G06F21/55;H04L12/66;

  • 国家 JP

  • 入库时间 2022-08-24 19:34:23

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号