首页> 外国专利> CORRELATION-BASED SECURITY THREAT ANALYSIS

CORRELATION-BASED SECURITY THREAT ANALYSIS

机译:CORRELATION-BASED安全威胁分析

摘要

Example methods and systems for correlation-based security threat analysis are described. In one example, a computer system may obtain event information that is generated by monitoring a virtualized computing instance supported by a host; and network alert information that is generated by monitoring network traffic associated with the virtualized computing instance. The network alert information may specify security threat signature(s) detected based on the network traffic. The computer system may map the network alert information to threat information that specifies indicator(s) of compromise associated with the signature(s) and perform a correlation analysis based on the event information, network alert information and threat information. Based on the correlation analysis, it is determined whether there is a potential security threat associated with the virtualized computing instance.
机译:

著录项

  • 公开/公告号US2022201022A1

    专利类型

  • 公开/公告日2022-06-23

    原文格式PDF

  • 申请/专利权人 VMWARE INC.;

    申请/专利号US202017126045

  • 发明设计人 BAIBHAV SINGH;JAYANT JAIN;

    申请日2020-12-18

  • 分类号H04L29/06;G06F9/455;

  • 国家

  • 入库时间 2023-06-25 23:46:15

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号