CN105488394A - 一种面向蜜罐系统进行入侵行为识别和分类的方法及系统 - Google Patents
一种面向蜜罐系统进行入侵行为识别和分类的方法及系统 Download PDFInfo
- Publication number
- CN105488394A CN105488394A CN201410824968.6A CN201410824968A CN105488394A CN 105488394 A CN105488394 A CN 105488394A CN 201410824968 A CN201410824968 A CN 201410824968A CN 105488394 A CN105488394 A CN 105488394A
- Authority
- CN
- China
- Prior art keywords
- event
- intrusion
- intrusion event
- new
- hash value
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
- 238000000034 method Methods 0.000 title claims abstract description 21
- 235000012907 honey Nutrition 0.000 claims description 21
- 230000000977 initiatory effect Effects 0.000 claims description 12
- 230000005284 excitation Effects 0.000 claims description 3
- 238000004458 analytical method Methods 0.000 abstract description 2
- 230000008447 perception Effects 0.000 description 2
- 230000009471 action Effects 0.000 description 1
- 230000009286 beneficial effect Effects 0.000 description 1
- 230000008901 benefit Effects 0.000 description 1
- 238000010586 diagram Methods 0.000 description 1
- 238000005516 engineering process Methods 0.000 description 1
- 238000009432 framing Methods 0.000 description 1
- 230000009545 invasion Effects 0.000 description 1
- 238000004519 manufacturing process Methods 0.000 description 1
- 230000004048 modification Effects 0.000 description 1
- 238000012986 modification Methods 0.000 description 1
- 230000008569 process Effects 0.000 description 1
- 230000004044 response Effects 0.000 description 1
- 238000004088 simulation Methods 0.000 description 1
- 230000003612 virological effect Effects 0.000 description 1
Landscapes
- Data Exchanges In Wide-Area Networks (AREA)
- Computer And Data Communications (AREA)
Abstract
Description
Claims (6)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201410824968.6A CN105488394B (zh) | 2014-12-27 | 2014-12-27 | 一种面向蜜罐系统进行入侵行为识别和分类的方法及系统 |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201410824968.6A CN105488394B (zh) | 2014-12-27 | 2014-12-27 | 一种面向蜜罐系统进行入侵行为识别和分类的方法及系统 |
Publications (2)
Publication Number | Publication Date |
---|---|
CN105488394A true CN105488394A (zh) | 2016-04-13 |
CN105488394B CN105488394B (zh) | 2018-06-12 |
Family
ID=55675368
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201410824968.6A Active CN105488394B (zh) | 2014-12-27 | 2014-12-27 | 一种面向蜜罐系统进行入侵行为识别和分类的方法及系统 |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN105488394B (zh) |
Cited By (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN108092948A (zh) * | 2016-11-23 | 2018-05-29 | 中国移动通信集团湖北有限公司 | 一种网络攻击模式的识别方法和装置 |
CN111030834A (zh) * | 2019-04-26 | 2020-04-17 | 北京安天网络安全技术有限公司 | 一种基于载荷传播行为的威胁预测方法、装置及存储设备 |
CN113923000A (zh) * | 2021-09-29 | 2022-01-11 | 海尔数字科技(青岛)有限公司 | 一种安全处理方法、装置、电子设备、及存储介质 |
Citations (8)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN1936910A (zh) * | 2005-11-16 | 2007-03-28 | 白杰 | 未知病毒程序的识别及清除方法 |
US20070094734A1 (en) * | 2005-09-29 | 2007-04-26 | Mangione-Smith William H | Malware mutation detector |
CN101582817A (zh) * | 2009-06-29 | 2009-11-18 | 华中科技大学 | 网络交互行为模式提取及相似性分析方法 |
CN103150509A (zh) * | 2013-03-15 | 2013-06-12 | 长沙文盾信息技术有限公司 | 一种基于虚拟执行的病毒检测系统 |
CN103268449A (zh) * | 2012-12-28 | 2013-08-28 | 武汉安天信息技术有限责任公司 | 一种手机恶意代码的高速检测方法和系统 |
CN103581104A (zh) * | 2012-07-18 | 2014-02-12 | 江苏中科慧创信息安全技术有限公司 | 一种基于行为捕捉的主动诱捕方法 |
CN103761483A (zh) * | 2014-01-27 | 2014-04-30 | 百度在线网络技术(北京)有限公司 | 恶意代码的检测方法及装置 |
CN104091121A (zh) * | 2014-06-12 | 2014-10-08 | 上海交通大学 | 对Android重打包恶意软件的恶意代码的检测、切除和恢复的方法 |
-
2014
- 2014-12-27 CN CN201410824968.6A patent/CN105488394B/zh active Active
Patent Citations (8)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20070094734A1 (en) * | 2005-09-29 | 2007-04-26 | Mangione-Smith William H | Malware mutation detector |
CN1936910A (zh) * | 2005-11-16 | 2007-03-28 | 白杰 | 未知病毒程序的识别及清除方法 |
CN101582817A (zh) * | 2009-06-29 | 2009-11-18 | 华中科技大学 | 网络交互行为模式提取及相似性分析方法 |
CN103581104A (zh) * | 2012-07-18 | 2014-02-12 | 江苏中科慧创信息安全技术有限公司 | 一种基于行为捕捉的主动诱捕方法 |
CN103268449A (zh) * | 2012-12-28 | 2013-08-28 | 武汉安天信息技术有限责任公司 | 一种手机恶意代码的高速检测方法和系统 |
CN103150509A (zh) * | 2013-03-15 | 2013-06-12 | 长沙文盾信息技术有限公司 | 一种基于虚拟执行的病毒检测系统 |
CN103761483A (zh) * | 2014-01-27 | 2014-04-30 | 百度在线网络技术(北京)有限公司 | 恶意代码的检测方法及装置 |
CN104091121A (zh) * | 2014-06-12 | 2014-10-08 | 上海交通大学 | 对Android重打包恶意软件的恶意代码的检测、切除和恢复的方法 |
Cited By (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN108092948A (zh) * | 2016-11-23 | 2018-05-29 | 中国移动通信集团湖北有限公司 | 一种网络攻击模式的识别方法和装置 |
CN108092948B (zh) * | 2016-11-23 | 2021-04-02 | 中国移动通信集团湖北有限公司 | 一种网络攻击模式的识别方法和装置 |
CN111030834A (zh) * | 2019-04-26 | 2020-04-17 | 北京安天网络安全技术有限公司 | 一种基于载荷传播行为的威胁预测方法、装置及存储设备 |
CN111030834B (zh) * | 2019-04-26 | 2023-09-05 | 北京安天网络安全技术有限公司 | 一种基于载荷传播行为的威胁预测方法、装置及存储设备 |
CN113923000A (zh) * | 2021-09-29 | 2022-01-11 | 海尔数字科技(青岛)有限公司 | 一种安全处理方法、装置、电子设备、及存储介质 |
CN113923000B (zh) * | 2021-09-29 | 2023-11-03 | 卡奥斯数字科技(青岛)有限公司 | 一种安全处理方法、装置、电子设备、及存储介质 |
Also Published As
Publication number | Publication date |
---|---|
CN105488394B (zh) | 2018-06-12 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN106790186B (zh) | 基于多源异常事件关联分析的多步攻击检测方法 | |
Feng et al. | Modeling and stability analysis of worm propagation in wireless sensor network | |
US20140222813A1 (en) | Collecting data in internet of things | |
KR20200052881A (ko) | 멀웨어 호스트 넷플로우 분석 시스템 및 방법 | |
EP2924943B1 (en) | Virus detection method and device | |
CN105264861A (zh) | 用于检测多阶段事件的方法和设备 | |
CN105516177B (zh) | 基于sdn和nfv的5g网络多级攻击缓解方法 | |
US9894097B2 (en) | Method and device for identifying abnormal application | |
CN104426906A (zh) | 识别计算机网络内的恶意设备 | |
CN104008332A (zh) | 一种基于Android平台的入侵检测系统 | |
CN103077352B (zh) | 一种基于云平台的程序行为分析的主动防御方法 | |
EP2854362B1 (en) | Software network behavior analysis and identification system | |
CN111049781B (zh) | 一种反弹式网络攻击的检测方法、装置、设备及存储介质 | |
CN104144164A (zh) | 基于网络入侵的扩展防御方法 | |
CN105447385B (zh) | 一种多层次检测的应用型数据库蜜罐实现系统及方法 | |
CN103916288A (zh) | 一种基于网关与本地的Botnet检测方法及系统 | |
CN105488394A (zh) | 一种面向蜜罐系统进行入侵行为识别和分类的方法及系统 | |
Dinh et al. | Dynamic economic-denial-of-sustainability (EDoS) detection in SDN-based cloud | |
CN116781412A (zh) | 一种基于异常行为的自动防御方法 | |
Wu et al. | Bayesian model updating method based android malware detection for IoT services | |
CN113645181B (zh) | 一种基于孤立森林的分布式规约攻击检测方法及系统 | |
CN112738003A (zh) | 恶意地址管理方法和装置 | |
Kumar et al. | Understanding the behaviour of android sms malware attacks with real smartphones dataset | |
CN113965406A (zh) | 网络阻断方法、装置、电子装置和存储介质 | |
CN110099041A (zh) | 一种物联网防护方法及设备、系统 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant | ||
CP03 | Change of name, title or address | ||
CP03 | Change of name, title or address |
Address after: 150010 Heilongjiang science and technology innovation city, Harbin new and high tech Industrial Development Zone, No. 7 building, innovation and entrepreneurship Plaza, 838 Patentee after: Harbin antiy Technology Group Limited by Share Ltd Address before: 150090 room 506, Hongqi Street, Nangang District, Harbin Development Zone, Heilongjiang, China, 162 Patentee before: Harbin Antiy Technology Co., Ltd. |
|
PE01 | Entry into force of the registration of the contract for pledge of patent right |
Denomination of invention: Method and system for carrying out intrusion behavior identification and classification on hotpot system Effective date of registration: 20190718 Granted publication date: 20180612 Pledgee: Bank of Longjiang, Limited by Share Ltd, Harbin Limin branch Pledgor: Harbin antiy Technology Group Limited by Share Ltd Registration number: 2019230000007 |
|
PE01 | Entry into force of the registration of the contract for pledge of patent right | ||
CP01 | Change in the name or title of a patent holder |
Address after: 150010 Heilongjiang science and technology innovation city, Harbin new and high tech Industrial Development Zone, No. 7 building, innovation and entrepreneurship Plaza, 838 Patentee after: Antan Technology Group Co.,Ltd. Address before: 150010 Heilongjiang science and technology innovation city, Harbin new and high tech Industrial Development Zone, No. 7 building, innovation and entrepreneurship Plaza, 838 Patentee before: Harbin Antian Science and Technology Group Co.,Ltd. |
|
CP01 | Change in the name or title of a patent holder | ||
PC01 | Cancellation of the registration of the contract for pledge of patent right |
Date of cancellation: 20211119 Granted publication date: 20180612 Pledgee: Bank of Longjiang Limited by Share Ltd. Harbin Limin branch Pledgor: Harbin Antian Science and Technology Group Co.,Ltd. Registration number: 2019230000007 |
|
PC01 | Cancellation of the registration of the contract for pledge of patent right |