CN110855675A - Mail safety consciousness testing method, device, equipment and storage medium - Google Patents

Mail safety consciousness testing method, device, equipment and storage medium Download PDF

Info

Publication number
CN110855675A
CN110855675A CN201911121034.5A CN201911121034A CN110855675A CN 110855675 A CN110855675 A CN 110855675A CN 201911121034 A CN201911121034 A CN 201911121034A CN 110855675 A CN110855675 A CN 110855675A
Authority
CN
China
Prior art keywords
mail
test
information
user
electronic mailbox
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201911121034.5A
Other languages
Chinese (zh)
Other versions
CN110855675B (en
Inventor
陈彦霖
周忠义
胡付博
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Eversec Beijing Technology Co Ltd
Original Assignee
Eversec Beijing Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Eversec Beijing Technology Co Ltd filed Critical Eversec Beijing Technology Co Ltd
Priority to CN201911121034.5A priority Critical patent/CN110855675B/en
Publication of CN110855675A publication Critical patent/CN110855675A/en
Application granted granted Critical
Publication of CN110855675B publication Critical patent/CN110855675B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/20Network architectures or network communication protocols for network security for managing network security; network security policies in general
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L43/00Arrangements for monitoring or testing data switching networks
    • H04L43/50Testing arrangements
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L51/00User-to-user messaging in packet-switching networks, transmitted according to store-and-forward or real-time protocols, e.g. e-mail
    • H04L51/42Mailbox-related aspects, e.g. synchronisation of mailboxes

Abstract

The embodiment of the invention discloses a mail safety awareness testing method, a device, equipment and a storage medium, wherein the method comprises the following steps: performing semantic analysis on an original mail sent by a user electronic mailbox to obtain a text corpus; constructing a test mail according to the text corpus; sending the test mail to a user electronic mailbox in a reply mail mode, and receiving operation information of a user for the test mail; and testing the safety consciousness of the user according to the operation information. The test mail is constructed through the original mail sent by the user electronic mailbox, so that the constructed test mail conforms to the conversation scene of the original mail, the reliability is increased, the difficulty of mail safety test is improved, and a good test effect is achieved.

Description

Mail safety consciousness testing method, device, equipment and storage medium
Technical Field
The embodiment of the invention relates to the technical field of communication, in particular to a mail safety awareness testing method, a mail safety awareness testing device, mail safety awareness testing equipment and a mail safety awareness testing storage medium.
Background
At present, whether a user of an email is a private person or an enterprise, the security awareness of the email is not strong, the email can be opened for reading as long as the email is sent, malicious fake email can be received sometimes, and even the operation of threatening the information security of the user is carried out aiming at the content in the email, so that great potential safety hazard is brought to the user.
The inventor finds that at least the following problems exist in the prior art, although a method for testing mail safety awareness of a user is provided at present, the used test mail usually adopts a fixed template, so that the problems of serious routing and homogenization are caused, the testing difficulty is low, and a good testing effect cannot be achieved.
Disclosure of Invention
The embodiment of the invention provides a mail safety awareness testing method, a mail safety awareness testing device, mail safety awareness testing equipment and a mail safety awareness testing storage medium. The method and the device realize that the test mail is constructed according to the original mail sent by the user electronic mailbox, so that the test mail conforms to the conversation scene of the original mail and has credibility, thereby improving the difficulty of mail safety test and achieving good test effect.
In a first aspect, an embodiment of the present invention provides a method for testing mail security awareness, including: performing semantic analysis on an original mail sent by a user electronic mailbox to obtain a text corpus;
constructing a test mail according to the text corpus;
sending the test mail to a user electronic mailbox, and receiving operation information of the user aiming at the test mail;
and testing the safety consciousness of the user according to the operation information.
In a second aspect, an embodiment of the present invention provides a device for testing mail security awareness, including:
the text corpus acquisition module is used for performing semantic analysis on an original mail sent by a user electronic mailbox to obtain a text corpus;
the test mail constructing module is used for constructing a test mail according to the text corpus;
the operation information acquisition module is used for sending the test mail to the user electronic mailbox and receiving the operation information of the user aiming at the test mail;
and the test result acquisition module is used for testing the safety consciousness of the user according to the operation information to obtain a test result.
In a third aspect, an embodiment of the present invention provides an apparatus, where the computer apparatus includes:
one or more processors;
storage means for storing one or more programs;
when executed by the one or more processors, cause the one or more processors to implement the method for mail safety awareness testing according to any of the embodiments of the present invention.
In a fourth aspect, an embodiment of the present invention further provides a computer storage medium, on which a computer program is stored, where the computer program, when executed by a processor, implements the mail security awareness testing method according to any embodiment of the present invention.
According to the technical scheme of the embodiment of the invention, the test mail is constructed through the original mail sent by the user electronic mailbox, so that the constructed test mail conforms to the conversation scene of the original mail, the reliability is increased, the difficulty of mail safety test is improved, and a good test effect is achieved.
Drawings
In order to more clearly illustrate the technical solutions of the embodiments of the present invention, the drawings needed to be used in the embodiments will be briefly described below, it should be understood that the following drawings only illustrate some embodiments of the present invention and therefore should not be considered as limiting the scope, and for those skilled in the art, other related drawings can be obtained according to the drawings without inventive efforts.
FIG. 1(a) is a flowchart of a safety awareness testing method according to an embodiment of the present invention;
FIG. 1(b) is a schematic diagram of an application scenario of a safety awareness testing method according to an embodiment of the present invention;
FIG. 2 is a flowchart of a safety awareness testing method according to a second embodiment of the present invention;
fig. 3 is a block diagram of a safety awareness testing apparatus according to a third embodiment of the present invention;
fig. 4 is a block diagram of a computer device according to a fourth embodiment of the present invention.
Detailed Description
The present invention will be described in further detail with reference to the accompanying drawings and examples. It is to be understood that the specific embodiments described herein are merely illustrative of the invention and are not limiting of the invention. It should be further noted that, for the convenience of description, only some of the structures related to the present invention are shown in the drawings, not all of the structures.
It should be further noted that, for the convenience of description, only some but not all of the relevant aspects of the present invention are shown in the drawings. Before discussing exemplary embodiments in more detail, it should be noted that some exemplary embodiments are described as processes or methods depicted as flowcharts. Although a flowchart may describe the operations (or steps) as a sequential process, many of the operations can be performed in parallel, concurrently or simultaneously. In addition, the order of the operations may be re-arranged. The process may be terminated when its operations are completed, but may have additional steps not included in the figure.
Example one
Fig. 1(a) is a flowchart of a mail security awareness testing method according to an embodiment of the present invention, where this embodiment is applicable to a case where a test mail is constructed to test security awareness of a user, and the method may be executed by a mail security awareness testing apparatus according to an embodiment of the present invention, where the apparatus may be implemented in a software and/or hardware manner, and may be generally integrated on a server. As shown in fig. 1(a), the method specifically includes the following operations:
step 101, performing semantic analysis on an original mail sent by a user electronic mailbox to obtain a text corpus.
Specifically, as shown in fig. 1(b), an application scenario diagram of this embodiment is shown, where a sender is a user needing to perform a security test in this application, a sender email box performs a normal email session with a receiver email box through a mail server, and a device constructs a test email and performs a security test on a security awareness of the user by obtaining an original email sent to the receiver email box by the sender email box in the mail server, so as to ensure that a test process and a normal email session process are executed respectively without affecting each other.
Optionally, the user email box is in communication connection with the mail server; before semantic analysis is performed on an original mail sent by a user electronic mailbox to obtain a text corpus, the method further comprises the following steps: and obtaining the bypass flow of the communication between the sender electronic mailbox and the mail server, and analyzing the bypass flow to obtain the original mail.
It should be noted that, in this embodiment, the bypass traffic of the communication between the sender email box and the mail server is intercepted, and the bypass traffic is analyzed to obtain the original mail sent by the sender email box to the receiver email box, and since the interception manner of the bypass traffic and the specific manner of analyzing and restoring the original mail from the traffic are not the key points of this application, no further description is given in this embodiment.
Optionally, the text corpus includes: sender information, recipient information, department information, job title information, and event information.
Specifically, after an original mail sent by a user electronic mailbox is acquired from a mail server, semantic analysis is performed on the original mail, and key corpus information for constructing a test mail is extracted from the original mail, for example, the information of a sender is: the name is Zhang III, the job name is software engineer; the recipient's information is: the name is Li IV, and the job is called manager; the department of the sender and the receiver is a research and development department; the event information is: zhang three requests Liquan to check the research result and give modification suggestions. The sender information and the receiver information may be obtained by performing semantic analysis on the sender and the receiver drop of the original mail, and the department information, the title information, and the event information may be obtained by performing semantic analysis on the body or the subject name of the original mail.
The semantic analysis is to analyze the original mail to extract the key content of the core, and specifically, a deep learning method or a statistical learning method may be adopted. Since the specific manner of semantic analysis is not the focus of the present application, the detailed description thereof is omitted in this embodiment.
And 102, constructing a test mail according to the text corpus.
Optionally, constructing the test mail according to the text corpus may include: exchanging the positions of the sender information and the receiver information to determine format information of the test mail; determining content information of the test mail according to the department information and the event information; after the original mail is added to the content information, certification information of the test mail is determined.
Specifically, in the embodiment, the test mail is constructed according to the text corpus extracted from the original mail, and the test mail is constructed based on the real mail conversation contents of the sender electronic mailbox and the receiver electronic mailbox, so that the test mail has more real context elements, and when the test mail is tested for a user, the user is not easy to perceive the reality of the test mail, and under the condition, the more real mail safety awareness of the user can be tested.
In one embodiment, if the text corpus obtained from the user's original email is as follows: the sender's information is: the name is Zhang III, the job name is software engineer; the recipient's information is: the name is Li IV, and the job is called manager; the department of the sender and the receiver is a research and development department; the event information is: zhang Sanqi requests LiIV to check the research and development results of the department and give modification suggestions. The sender information and the receiver information can be interchanged when the test mail is constructed, that is, the name "zhang" and the software engineer are used as the information of the receiver in the test mail, and the name "lij" and the manager are used as the information of the sender in the test mail, so as to determine the format information of the test mail, that is, to determine the name of the beginning receiver and the signature of the ending sender in the test mail. In addition, according to the department information development part, and the event information: zhang Sanqirequested Li IV checks the development result of the department and gives a modification suggestion, and adjusts the request affairs in the event information according to the mode of replying the original mail to obtain the content information of the test mail, for example, "the development result about the development department has been checked and gives a modification suggestion, and the detail is the attachment content", and the attachment content is an address link, and the equipment can be accessed again as long as the user opens the address link in the attachment content. And the original mail can be added to the content information and then used as the certification information of the test mail, so that the credibility of the user on the fact that the test mail is sent out by the real receiver electronic mailbox is increased.
It should be noted that, in the present embodiment, only the construction method of the test mail is illustrated, but the present invention is not limited to the above example, and other methods are also within the scope of the present application as long as the test mail can be obtained from the original mail.
Optionally, after determining the content information of the test mail according to the department information and the event information, the method further includes: acquiring a pre-stored corpus; and expanding the content information according to the pre-stored corpus.
Specifically, the pre-stored corpus is obtained by extracting keywords according to a historical mail sent from a sender electronic mailbox to a receiver electronic mailbox, the pre-stored corpus comprises habitual use vocabularies with higher use probability of the sender in the historical mail, and the content information of the test mail is expanded by the pre-stored corpus, so that the credibility of a user for sending the test mail from the receiver electronic mailbox can be further increased.
It should be noted that the historical mail information in the present application may be obtained by analyzing the bypass traffic before the sender email box and the email server email box, and of course, the embodiment of the present application is only described by way of example, and does not limit the specific obtaining manner of the historical mail.
And 103, sending the test mail to the user electronic mailbox in a reply mail mode, and receiving the operation information of the user for the test mail.
Optionally, sending the test mail to the user electronic mailbox, and receiving operation information of the user for the test mail may include: and sending the test mail to the user electronic mailbox through the mail server, and receiving the operation information of the user aiming at the test mail.
It should be noted that the original email is added after the content information of the test email and is used as the certification information of the test email, so that after the test email is sent to the email server, when the email server sends the test email to the sender email box, the specific expression is that the receiver email box sends the test email to the sender email box in the form of a reply email, thereby enhancing the credibility of the user that the test email is a true reply by the receiver email box.
Optionally, the operation information includes: open, delete, click on a link, or reply.
Specifically, after receiving a test mail, if the test mail is opened, deleted or replied, the user feeds back the operation information to the equipment through the mail server; if the user opens the test mail and clicks the link operation on the attachment, the equipment is directly accessed, so that the information of the clicking link operation can be determined according to the access condition.
And 104, testing the safety consciousness of the user according to the operation information.
Specifically, if the operation information is determined to be deleted, the mail safety awareness of the user is very strong, so that the test level of the user is determined to be one level; if the operation information is determined to be open, the mail safety awareness of the user is weak, and therefore the test level of the user is determined to be second level; if the operation information is determined to be at least one of a reply or a click link, the mail safety awareness of the user is very poor, and therefore the test level of the user is determined to be three levels.
It should be noted that, in practical application, the operation information may also include other types, which is only illustrated by way of example in this embodiment, and the division of the user mail security awareness level is also only illustrated by way of example, and a specific manner of the user mail security awareness level division is not limited, as long as the test of the user mail security awareness can be implemented, and the division of the other types of levels is also within the protection scope of this application, and is not described again in this embodiment of the present application.
According to the technical scheme of the embodiment of the invention, the test mail is constructed through the original mail sent by the user electronic mailbox, so that the constructed test mail conforms to the conversation scene of the original mail, the reliability is increased, the difficulty of mail safety test is improved, and a good test effect is achieved.
Example two
Fig. 2 is a flowchart of a mail safety awareness testing method according to a second embodiment of the present invention, in this embodiment, after the safety awareness of the user is tested according to the operation information, a step of sending safety education information to the user electronic mailbox according to a test result is further added.
Step 201, performing semantic analysis on an original mail sent by a user electronic mailbox to obtain a text corpus.
Step 202, constructing a test mail according to the text corpus.
Step 203, sending the test mail to the user electronic mailbox in the form of a reply mail, and receiving the operation information of the user for the test mail.
And 204, testing the safety consciousness of the user according to the operation information.
And step 205, sending the safety education information to the user electronic mailbox according to the test result.
Specifically, the higher the test level is, the weaker the mail security awareness of the user is, the more abundant the content of the corresponding security education information sent to the electronic mailbox of the user is, and the sending frequency is higher.
For example, for a user with a first-level test level, if the mail safety awareness of the user is very strong, the user does not need to send safety education information to the electronic mailbox of the user; for the user with the second-level test level, because the safety consciousness of the user is weak, the safety education information is sent once every other week, the content of the safety education information sent each time is 3-4 pages, and the method for improving the safety consciousness is simply explained in the content; for the user whose test level is three-level, because the safety awareness of the user is very poor, the safety education information is transmitted every three days, and the content of the safety education information transmitted every time is 5-10 pages, and the contents detail how to improve the safety awareness and the specific remedial measures after damage.
According to the technical scheme of the embodiment of the invention, the test mail is constructed through the original mail sent by the user electronic mailbox, so that the constructed test mail conforms to the conversation scene of the original mail, the reliability is increased, the difficulty of mail safety test is improved, and a good test effect is achieved. And after the safety consciousness of the user is tested according to the operation information, safety education information is sent to the user electronic mailbox according to the test result, so that the mail safety consciousness of the user is improved.
EXAMPLE III
Fig. 3 is a block diagram of a safety awareness testing apparatus according to a third embodiment of the present invention, where the apparatus includes: a text corpus obtaining module 310, a test mail constructing module 320, an operation information obtaining module 330 and a test result obtaining module 340.
The text corpus acquiring module 310 is configured to perform semantic analysis on an original email sent by a user email to obtain a text corpus;
the test mail constructing module 320 is used for constructing a test mail according to the text corpus;
an operation information obtaining module 330, configured to send the test email to the user email in the form of a reply email, and receive operation information of the user for the test email;
and the test result acquisition module 340 is used for testing the safety awareness of the user according to the operation information to obtain a test result.
The device can execute the mail safety awareness testing method provided by any embodiment of the invention, and has corresponding functional modules and beneficial effects of the executing method. For technical details not described in detail in this embodiment, reference may be made to the method provided in any embodiment of the present invention.
Example four
Fig. 4 is a schematic structural diagram of an apparatus according to an embodiment of the present invention. Fig. 4 illustrates a block diagram of an exemplary device 412 suitable for use in implementing embodiments of the present invention. The device 412 shown in fig. 4 is only an example and should not impose any limitation on the functionality or scope of use of embodiments of the present invention.
As shown in FIG. 4, device 412 is in the form of a general purpose computing device. The components of device 412 may include, but are not limited to: one or more processors 416, a memory 428, and a bus 418 that couples the various system components (including the memory 428 and the processors 416).
Bus 418 represents one or more of any of several types of bus structures, including a memory bus or memory controller, a peripheral bus, an accelerated graphics port, and a processor or local bus using any of a variety of bus architectures. By way of example, such architectures include, but are not limited to, Industry Standard Architecture (ISA) bus, micro-channel architecture (MAC) bus, enhanced ISA bus, Video Electronics Standards Association (VESA) local bus, and Peripheral Component Interconnect (PCI) bus.
Device 412 typically includes a variety of computer system readable media. Such media can be any available media that is accessible by device 412 and includes both volatile and nonvolatile media, removable and non-removable media.
The memory 428 is used to store instructions. Memory 428 can include computer system readable media in the form of volatile memory, such as Random Access Memory (RAM)430 and/or cache memory 432. The device 412 may further include other removable/non-removable, volatile/nonvolatile computer system storage media. By way of example only, storage system 434 may be used to read from and write to non-removable, nonvolatile magnetic media (not shown in FIG. 4, commonly referred to as a "hard drive"). Although not shown in FIG. 4, a magnetic disk drive for reading from and writing to a removable, nonvolatile magnetic disk (e.g., a "floppy disk") and an optical disk drive for reading from or writing to a removable, nonvolatile optical disk (e.g., a CD-ROM, DVD-ROM, or other optical media) may be provided. In these cases, each drive may be connected to bus 418 by one or more data media interfaces. Memory 428 can include at least one program product having a set (e.g., at least one) of program modules that are configured to carry out the functions of embodiments of the invention.
A program/utility 440 having a set (at least one) of program modules 442 may be stored, for instance, in memory 428, such program modules 442 including, but not limited to, an operating system, one or more application programs, other program modules, and program data, each of which examples or some combination thereof may comprise an implementation of a network environment. The program modules 442 generally perform the functions and/or methodologies of the described embodiments of the invention.
The device 412 may also communicate with one or more external devices 414 (e.g., keyboard, pointing device, display 424, etc.), with one or more devices that enable a user to interact with the device 412, and/or with any devices (e.g., network card, modem, etc.) that enable the device 412 to communicate with one or more other computing devices. Such communication may occur via input/output (I/O) interfaces 422. Also, the device 412 may communicate with one or more networks (e.g., a Local Area Network (LAN), a Wide Area Network (WAN), and/or a public network, such as the internet) through the network adapter 420. As shown, network adapter 420 communicates with the other modules of device 412 over bus 418. It should be appreciated that although not shown in FIG. 4, other hardware and/or software modules may be used in conjunction with device 412, including but not limited to: microcode, device drivers, redundant processing units, external disk drive arrays, RAID systems, tape drives, and data backup storage systems, among others.
The processor 416 executes instructions stored in the memory 428 to perform various functional applications and data processing, such as implementing the mail security awareness testing method provided by the embodiment of the present invention: performing semantic analysis on an original mail sent by a user electronic mailbox to obtain a text corpus; constructing a test mail according to the text corpus; sending the test mail to a user electronic mailbox, and receiving operation information of the user aiming at the test mail; and testing the safety consciousness of the user according to the operation information.
EXAMPLE five
The fifth embodiment of the present invention provides a computer-readable storage medium, on which a computer program is stored, where the computer program, when executed by a processor, implements the method for testing mail security awareness provided in all the embodiments of the present invention:
performing semantic analysis on an original mail sent by a user electronic mailbox to obtain a text corpus;
constructing a test mail according to the text corpus;
sending the test mail to a user electronic mailbox, and receiving operation information of the user aiming at the test mail;
and testing the safety consciousness of the user according to the operation information.
Any combination of one or more computer-readable media may be employed. The computer readable medium may be a computer readable signal medium or a computer readable storage medium. A computer readable storage medium may be, for example, but not limited to, an electronic, magnetic, optical, electromagnetic, infrared, or semiconductor system, apparatus, or device, or any combination of the foregoing. More specific examples (a non-exhaustive list) of the computer readable storage medium would include the following: an electrical connection having one or more wires, a portable computer diskette, a hard disk, a Random Access Memory (RAM), a read-only memory (ROM), an erasable programmable read-only memory (EPROM or flash memory), an optical fiber, a portable compact disc read-only memory (CD-ROM), an optical storage device, a magnetic storage device, or any suitable combination of the foregoing. In the context of this document, a computer readable storage medium may be any tangible medium that can contain, or store a program for use by or in connection with an instruction execution system, apparatus, or device.
A computer readable signal medium may include a propagated data signal with computer readable program code embodied therein, for example, in baseband or as part of a carrier wave. Such a propagated data signal may take any of a variety of forms, including, but not limited to, electro-magnetic, optical, or any suitable combination thereof. A computer readable signal medium may also be any computer readable medium that is not a computer readable storage medium and that can communicate, propagate, or transport a program for use by or in connection with an instruction execution system, apparatus, or device.
Program code embodied on a computer readable medium may be transmitted using any appropriate medium, including but not limited to wireless, wireline, optical fiber cable, RF, etc., or any suitable combination of the foregoing.
Computer program code for carrying out operations for aspects of the present invention may be written in any combination of one or more programming languages, including an object oriented programming language such as Java, Smalltalk, C + + or the like and conventional procedural programming languages, such as the "C" programming language or similar programming languages. The program code may execute entirely on the user's computer, partly on the user's computer, as a stand-alone software package, partly on the user's computer and partly on a remote computer or entirely on the remote computer or server. In the case of a remote computer, the remote computer may be connected to the user's computer through any type of network, including a Local Area Network (LAN) or a Wide Area Network (WAN), or the connection may be made to an external computer (for example, through the Internet using an Internet service provider).
It is to be noted that the foregoing is only illustrative of the preferred embodiments of the present invention and the technical principles employed. It will be understood by those skilled in the art that the present invention is not limited to the particular embodiments described herein, but is capable of various obvious changes, rearrangements and substitutions as will now become apparent to those skilled in the art without departing from the scope of the invention. Therefore, although the present invention has been described in greater detail by the above embodiments, the present invention is not limited to the above embodiments, and may include other equivalent embodiments without departing from the spirit of the present invention, and the scope of the present invention is determined by the scope of the appended claims.

Claims (10)

1. A mail security awareness testing method, comprising:
performing semantic analysis on an original mail sent by a user electronic mailbox to obtain a text corpus;
constructing a test mail according to the text corpus;
sending the test mail to the user electronic mailbox in a reply mail form, and receiving the operation information of the user for the test mail;
and testing the safety consciousness of the user according to the operation information.
2. The method of claim 1, wherein the user electronic mailbox is communicatively coupled to a mail server;
before semantic analysis is performed on an original mail sent by a user electronic mailbox to obtain a text corpus, the method further comprises the following steps:
obtaining the bypass flow of the communication between the sender electronic mailbox and the mail server;
and analyzing the bypass flow to obtain the original mail.
3. The method of claim 1, wherein the text corpus comprises: sender information, recipient information, department information, job title information, and event information.
4. The method of claim 3, wherein constructing the test mail from the text corpus comprises:
exchanging the positions of the sender information and the receiver information to determine format information of the test mail;
determining the content information of the test mail according to the department information and the event information;
and after the original mail is added to the content information, determining the certification information of the test mail.
5. The method of claim 4, wherein after determining the content information of the test mail according to the department information and the event information, further comprising:
acquiring a pre-stored corpus;
and expanding the content information according to the pre-stored corpus.
6. The method of claim 1, wherein the operational information comprises: open, delete, click on a link, or reply.
7. The method according to any one of claims 1 to 6, wherein the sending the test mail to the user electronic mailbox and receiving the operation information of the user for the test mail comprises:
and sending the test mail to the user electronic mailbox through the mail server, and receiving the operation information of the user aiming at the test mail.
8. A mail security awareness testing apparatus, comprising:
the text corpus acquisition module is used for performing semantic analysis on an original mail sent by a user electronic mailbox to obtain a text corpus;
the test mail construction module is used for constructing a test mail according to the text corpus;
the operation information acquisition module is used for sending the test mail to the user electronic mailbox in a reply mail mode and receiving the operation information of the user aiming at the test mail;
and the test result acquisition module is used for testing the safety consciousness of the user according to the operation information to acquire a test result.
9. An apparatus, characterized in that the computer apparatus comprises:
one or more processors;
storage means for storing one or more programs;
when executed by the one or more processors, cause the one or more processors to implement the mail safety awareness testing method of any of claims 1-7.
10. A computer storage medium, on which a computer program is stored, which program, when being executed by a processor, carries out a mail security awareness testing method according to any one of claims 1 to 7.
CN201911121034.5A 2019-11-15 2019-11-15 Mail safety consciousness testing method, device, equipment and storage medium Active CN110855675B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201911121034.5A CN110855675B (en) 2019-11-15 2019-11-15 Mail safety consciousness testing method, device, equipment and storage medium

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201911121034.5A CN110855675B (en) 2019-11-15 2019-11-15 Mail safety consciousness testing method, device, equipment and storage medium

Publications (2)

Publication Number Publication Date
CN110855675A true CN110855675A (en) 2020-02-28
CN110855675B CN110855675B (en) 2021-12-03

Family

ID=69601591

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201911121034.5A Active CN110855675B (en) 2019-11-15 2019-11-15 Mail safety consciousness testing method, device, equipment and storage medium

Country Status (1)

Country Link
CN (1) CN110855675B (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111416801A (en) * 2020-03-11 2020-07-14 时时同云科技(成都)有限责任公司 Mail processing method and device
CN114465978A (en) * 2022-02-07 2022-05-10 北京知道创宇信息技术股份有限公司 Mailbox disclosure discovery method, device and system and readable storage medium

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20060195541A1 (en) * 2002-05-29 2006-08-31 Microsoft Corporation Electronic mail replies with speech recognition
CN101599920A (en) * 2009-06-30 2009-12-09 东北大学 Can verify the e-mail system and the method for mail user source address and authenticity
CN103078753A (en) * 2012-12-27 2013-05-01 华为技术有限公司 Method, device and system for processing mails
CN109067637A (en) * 2018-06-15 2018-12-21 北京首联信通科技有限公司 Network information security Consciousness Education method and device, storage medium

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20060195541A1 (en) * 2002-05-29 2006-08-31 Microsoft Corporation Electronic mail replies with speech recognition
CN101599920A (en) * 2009-06-30 2009-12-09 东北大学 Can verify the e-mail system and the method for mail user source address and authenticity
CN103078753A (en) * 2012-12-27 2013-05-01 华为技术有限公司 Method, device and system for processing mails
CN109067637A (en) * 2018-06-15 2018-12-21 北京首联信通科技有限公司 Network information security Consciousness Education method and device, storage medium

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111416801A (en) * 2020-03-11 2020-07-14 时时同云科技(成都)有限责任公司 Mail processing method and device
CN114465978A (en) * 2022-02-07 2022-05-10 北京知道创宇信息技术股份有限公司 Mailbox disclosure discovery method, device and system and readable storage medium
CN114465978B (en) * 2022-02-07 2023-10-13 北京知道创宇信息技术股份有限公司 Mailbox leakage discovery method, device and system and readable storage medium

Also Published As

Publication number Publication date
CN110855675B (en) 2021-12-03

Similar Documents

Publication Publication Date Title
CN111343161B (en) Abnormal information processing node analysis method, abnormal information processing node analysis device, abnormal information processing node analysis medium and electronic equipment
CN110855675B (en) Mail safety consciousness testing method, device, equipment and storage medium
CN112636957A (en) Early warning method and device based on log, server and storage medium
CN111680313B (en) Data processing method, device, equipment and storage medium
CN110647523B (en) Data quality analysis method and device, storage medium and electronic equipment
CN110716843B (en) System fault analysis processing method and device, storage medium and electronic equipment
Saleem et al. Evaluating and comparing tools for mobile device forensics using quantitative analysis
CN111241043A (en) Multimedia file sharing method, terminal and storage medium
CN111552792A (en) Information query method and device, electronic equipment and storage medium
CN111241180A (en) Information processing method, device, equipment and storage medium
CN107704589B (en) Freight note-based interest point failure mining method, device, server and medium
US10015181B2 (en) Using natural language processing for detection of intended or unexpected application behavior
CN109684207B (en) Method and device for packaging operation sequence, electronic equipment and storage medium
CN107992457B (en) Information conversion method, device, terminal equipment and storage medium
CN115022201B (en) Data processing function test method, device, equipment and storage medium
CN109740094A (en) Page monitoring method, equipment and computer storage medium
CN114037523A (en) Letter service test method, device, equipment, medium and program product
CN112131611B (en) Data correctness verification method, device, equipment, system and storage medium
CN114219643A (en) Transaction calling method, device, equipment and storage medium
CN111800409A (en) Interface attack detection method and device
CN112347066A (en) Log processing method and device, server and computer readable storage medium
US20180276744A1 (en) Multicomputer Digital Data Processing to Provide Access and Process Control
CN112527888B (en) Data analysis method and device, electronic equipment and storage medium
CN115859964B (en) Educational resource sharing method and system based on educational cloud platform
CN109525630B (en) Method, apparatus, medium, and electronic device for transmitting data analysis request

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant