首页> 外国专利> APT Advanced Persistent Threat attack tolerance system and method using cloud computing virtualization

APT Advanced Persistent Threat attack tolerance system and method using cloud computing virtualization

机译:使用云计算虚拟化的APT高级持久威胁攻击容忍系统和方法

摘要

The present invention relates to an APT attack tolerance system and a method thereof using cloud virtualization, and more particularly, to a cloud virtualization system for analyzing inbound traffic by communication from an external network to an internal network, (APT) attack prevention system using APT (Intelligent Sustainable Threat) attack prevention system using pre-stored traffic judgment information, it is judged whether or not the received inbound traffic includes malicious code, and the malicious code If the inbound traffic is not included in the inbound traffic according to a result of the determination, the inbound traffic is transmitted to the user group unit 300 when the inbound traffic is included in the inbound traffic, A defensive portion 100, at least one tenant, A cloud-based virtualization unit 200 for performing virtualization of inbound communication based on the inbound traffic received from the APT attack defense unit 100 in each tenant, at least one user, The user group unit 300 that performs inbound communication based on the inbound traffic received from the APT attack defense unit 100 and the virtual inbound communication performed by the cloud based virtualization unit 200 to analyze the inbound traffic And an APT attack control unit (400) for performing malicious code detection based on the behavior of the APT attack prevention system.;
机译:APT攻击防御系统及其方法技术领域本发明涉及一种使用云虚拟化的APT攻击容忍系统及其方法,尤其涉及一种通过从外部网络到内部网络之间的通信来分析入站流量的云虚拟化系统,以及一种使用APT的攻击防御系统。 (Intelligent Sustainable Threat)攻击防御系统,使用预先存储的流量判断信息,根据接收到的结果,判断接收到的入站流量是否包含恶意代码,以及是否包含恶意代码。确定时,当入站通信中包括入站通信时,将入站通信发送到用户组单元300,防御部分100,至少一个租户,基于云的虚拟化单元200,用于基于以下内容执行入站通信的虚拟化至少一个用户,每个租户中从APT攻击防御单元100接收的入站流量组单元300,其基于从APT攻击防御单元100接收的入站流量和基于云的虚拟化单元200执行的虚拟入站通信来执行入站通信,以分析入站流量;以及APT攻击控制单元(400),用于执行基于APT攻击防范系统行为的恶意代码检测;

著录项

  • 公开/公告号KR101752880B1

    专利类型

  • 公开/公告日2017-07-03

    原文格式PDF

  • 申请/专利权人 (주)유엠로직스;

    申请/专利号KR20150163456

  • 发明设计人 남기효;

    申请日2015-11-20

  • 分类号H04L29/06;

  • 国家 KR

  • 入库时间 2022-08-21 13:25:16

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号