CN113285962B - 在线操作监测方法与系统 - Google Patents
在线操作监测方法与系统 Download PDFInfo
- Publication number
- CN113285962B CN113285962B CN202110827148.2A CN202110827148A CN113285962B CN 113285962 B CN113285962 B CN 113285962B CN 202110827148 A CN202110827148 A CN 202110827148A CN 113285962 B CN113285962 B CN 113285962B
- Authority
- CN
- China
- Prior art keywords
- vpn
- online
- login
- log
- online operation
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
- 238000000034 method Methods 0.000 title claims abstract description 48
- 238000012544 monitoring process Methods 0.000 title claims abstract description 31
- 230000002159 abnormal effect Effects 0.000 claims abstract description 92
- 238000012549 training Methods 0.000 claims abstract description 39
- 238000004590 computer program Methods 0.000 claims description 23
- 238000010801 machine learning Methods 0.000 claims description 17
- 230000006855 networking Effects 0.000 claims description 9
- 238000012545 processing Methods 0.000 claims description 9
- 238000010606 normalization Methods 0.000 claims description 7
- 230000000903 blocking effect Effects 0.000 claims description 2
- 230000000875 corresponding effect Effects 0.000 claims 7
- 230000002596 correlated effect Effects 0.000 claims 1
- 230000008569 process Effects 0.000 abstract description 11
- 230000006399 behavior Effects 0.000 description 7
- 238000004891 communication Methods 0.000 description 4
- 238000010586 diagram Methods 0.000 description 4
- 238000005516 engineering process Methods 0.000 description 4
- 238000012986 modification Methods 0.000 description 3
- 230000004048 modification Effects 0.000 description 3
- 238000005336 cracking Methods 0.000 description 2
- 238000011161 development Methods 0.000 description 2
- 206010000117 Abnormal behaviour Diseases 0.000 description 1
- 238000012937 correction Methods 0.000 description 1
- 230000007547 defect Effects 0.000 description 1
- 238000001514 detection method Methods 0.000 description 1
- 238000000605 extraction Methods 0.000 description 1
- 230000006870 function Effects 0.000 description 1
- 238000011835 investigation Methods 0.000 description 1
- 230000007246 mechanism Effects 0.000 description 1
- 230000003287 optical effect Effects 0.000 description 1
- 230000003068 static effect Effects 0.000 description 1
- 238000007619 statistical method Methods 0.000 description 1
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/14—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
- H04L63/1408—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic by monitoring network traffic
- H04L63/1425—Traffic logging, e.g. anomaly detection
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06N—COMPUTING ARRANGEMENTS BASED ON SPECIFIC COMPUTATIONAL MODELS
- G06N20/00—Machine learning
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L41/00—Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
- H04L41/14—Network analysis or design
- H04L41/142—Network analysis or design using statistical or mathematical methods
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/20—Network architectures or network communication protocols for network security for managing network security; network security policies in general
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- General Engineering & Computer Science (AREA)
- Computing Systems (AREA)
- Signal Processing (AREA)
- Computer Networks & Wireless Communication (AREA)
- Mathematical Physics (AREA)
- Computer Hardware Design (AREA)
- Theoretical Computer Science (AREA)
- Physics & Mathematics (AREA)
- Software Systems (AREA)
- General Physics & Mathematics (AREA)
- Artificial Intelligence (AREA)
- Mathematical Analysis (AREA)
- Algebra (AREA)
- Pure & Applied Mathematics (AREA)
- Computer Vision & Pattern Recognition (AREA)
- Data Mining & Analysis (AREA)
- Evolutionary Computation (AREA)
- Medical Informatics (AREA)
- Mathematical Optimization (AREA)
- Probability & Statistics with Applications (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
Abstract
Description
Claims (9)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN202110827148.2A CN113285962B (zh) | 2021-07-21 | 2021-07-21 | 在线操作监测方法与系统 |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN202110827148.2A CN113285962B (zh) | 2021-07-21 | 2021-07-21 | 在线操作监测方法与系统 |
Publications (2)
Publication Number | Publication Date |
---|---|
CN113285962A CN113285962A (zh) | 2021-08-20 |
CN113285962B true CN113285962B (zh) | 2021-12-17 |
Family
ID=77286840
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN202110827148.2A Active CN113285962B (zh) | 2021-07-21 | 2021-07-21 | 在线操作监测方法与系统 |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN113285962B (zh) |
Families Citing this family (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN114615037A (zh) * | 2022-03-02 | 2022-06-10 | 奇安信科技集团股份有限公司 | 用于安全分析的实时空间行为安全基线生成方法及装置 |
CN114912678A (zh) * | 2022-05-10 | 2022-08-16 | 国网江苏省电力有限公司苏州供电分公司 | 电网调控异常操作在线自动检测预警方法及系统 |
Citations (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN103905464A (zh) * | 2014-04-21 | 2014-07-02 | 西安电子科技大学 | 基于形式化方法的网络安全策略验证系统及方法 |
CN110674021A (zh) * | 2019-09-09 | 2020-01-10 | 深圳供电局有限公司 | 一种移动应用登录日志的检测方法及系统 |
CN112926048A (zh) * | 2021-05-11 | 2021-06-08 | 北京天空卫士网络安全技术有限公司 | 一种异常信息检测方法和装置 |
Family Cites Families (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20190141067A1 (en) * | 2017-11-09 | 2019-05-09 | Cisco Technology, Inc. | Deep recurrent neural network for cloud server profiling and anomaly detection through dns queries |
CN110618977B (zh) * | 2019-09-12 | 2023-10-31 | 腾讯科技(深圳)有限公司 | 登录异常检测方法、装置、存储介质和计算机设备 |
CN111177095B (zh) * | 2019-12-10 | 2023-10-27 | 中移(杭州)信息技术有限公司 | 日志分析方法、装置、计算机设备及存储介质 |
-
2021
- 2021-07-21 CN CN202110827148.2A patent/CN113285962B/zh active Active
Patent Citations (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN103905464A (zh) * | 2014-04-21 | 2014-07-02 | 西安电子科技大学 | 基于形式化方法的网络安全策略验证系统及方法 |
CN110674021A (zh) * | 2019-09-09 | 2020-01-10 | 深圳供电局有限公司 | 一种移动应用登录日志的检测方法及系统 |
CN112926048A (zh) * | 2021-05-11 | 2021-06-08 | 北京天空卫士网络安全技术有限公司 | 一种异常信息检测方法和装置 |
Also Published As
Publication number | Publication date |
---|---|
CN113285962A (zh) | 2021-08-20 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
US9560067B2 (en) | Correlation based security risk identification | |
CN109525558B (zh) | 数据泄露检测方法、系统、装置及存储介质 | |
KR101883400B1 (ko) | 에이전트리스 방식의 보안취약점 점검 방법 및 시스템 | |
CN101924757B (zh) | 追溯僵尸网络的方法和系统 | |
CN113285962B (zh) | 在线操作监测方法与系统 | |
CN106789935B (zh) | 一种终端异常检测方法 | |
US6993683B2 (en) | Analysis of pipelined networks | |
CN111586033A (zh) | 一种数据中心的资产数据中台 | |
CN111092845B (zh) | 一种访问涉密文件的预警评估方法及系统 | |
CN113614718A (zh) | 异常用户会话检测器 | |
US20160294860A1 (en) | Honey user | |
CN113572757B (zh) | 服务器访问风险监测方法及装置 | |
CN111327601A (zh) | 异常数据响应方法、系统、装置、计算机设备和存储介质 | |
CN106911510B (zh) | 网络准入系统的可用性监测系统及方法 | |
CN100379201C (zh) | 可控计算机网络的分布式黑客追踪的方法 | |
CN114760083B (zh) | 一种攻击检测文件的发布方法、装置及存储介质 | |
CN109600395A (zh) | 一种终端网络接入控制系统的装置及实现方法 | |
US9742641B2 (en) | System and method for identifying real users behind application servers | |
US9003514B1 (en) | System and method to troubleshoot a defect in operation of a machine | |
CN113194088B (zh) | 访问拦截方法、装置、日志服务器和计算机可读存储介质 | |
CN114301802A (zh) | 密评检测方法、装置和电子设备 | |
CN114297712A (zh) | 基于数据流转全流程审计的数据防攻击方法及装置 | |
CN114124512A (zh) | 基于流量行为分析的微信小程序监管方法、系统和设备 | |
CN102752318B (zh) | 一种基于互联网的信息安全验证方法和系统 | |
CN115174270B (zh) | 一种行为异常检测方法、装置、设备及介质 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant | ||
CP03 | Change of name, title or address |
Address after: Room 86, room 406, No.1, Yichuang street, Zhongxin Guangzhou Knowledge City, Huangpu District, Guangzhou City, Guangdong Province Patentee after: Southern Power Grid Digital Grid Research Institute Co.,Ltd. Country or region after: China Address before: Room 86, room 406, No.1, Yichuang street, Zhongxin Guangzhou Knowledge City, Huangpu District, Guangzhou City, Guangdong Province Patentee before: Southern Power Grid Digital Grid Research Institute Co.,Ltd. Country or region before: China |
|
CP03 | Change of name, title or address | ||
TR01 | Transfer of patent right |
Effective date of registration: 20240325 Address after: Floor 12, Unit 2, Building 2, No. 11 Spectral Middle Road, Huangpu District, Guangzhou City, Guangdong Province, 510700, China Patentee after: China Southern Power Grid Digital Power Grid Group Information Communication Technology Co.,Ltd. Country or region after: China Address before: Room 86, room 406, No.1, Yichuang street, Zhongxin Guangzhou Knowledge City, Huangpu District, Guangzhou City, Guangdong Province Patentee before: Southern Power Grid Digital Grid Research Institute Co.,Ltd. Country or region before: China |
|
TR01 | Transfer of patent right |