首页> 外国专利> Identifying cyber adversary behavior

Identifying cyber adversary behavior

机译:识别网络对抗行为

摘要

Identifying cyber adversary behavior on a computer network is provided. Individual security events are received from multiple threat intelligence data sources. A security incident corresponding to an attack on at least one element of the computer network, the security incident being described by the individual security events received from the multiple threat intelligence data sources, is matched to a defined cyber adversary objective in a structured framework of a plurality of defined cyber adversary objectives and a related technique associated with the defined cyber adversary objective used by a cyber adversary in the attack. A set of mitigation actions is performed on the computer network based on matching the security incident corresponding to the attack on the computer network to the defined cyber adversary objective and the related technique.
机译:提供了识别计算机网络上的网络对抗行为。 从多个威胁情报数据源收到各个安全事件。 对对计算机网络的至少一个元素的攻击相对应的安全事件,从多个威胁智能数据源接收的各个安全事件描述的安全事件与一个结构化框架中的定义网络对抗目标匹配匹配 多个限定的网络逆境目标和与攻击中网络逆境所使用的限定网络对抗物体相关的相关技术。 基于将对应于计算机网络的攻击对应的安全事件匹配到定义的网络对手目标和相关技术,对计算机网络进行了一组缓解动作。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号