首页> 外国专利> MALICIOUS THREAT DETECTION, MALICIOUS THREAT PREVENTION, AND A LEARNING SYSTEMS AND METHODS FOR MALICIOUS THREAT DETECTION AND PREVENTION

MALICIOUS THREAT DETECTION, MALICIOUS THREAT PREVENTION, AND A LEARNING SYSTEMS AND METHODS FOR MALICIOUS THREAT DETECTION AND PREVENTION

机译:恶意威胁检测,恶意威胁预防以及恶意威胁检测和预防的学习系统和方法

摘要

A method of identifying one or more malicious threats in a computing device. The device comprises monitoring a plurality of events occurring on a computing device in run time, a plurality of processes executed on the computing device in run time, and a plurality of host activities of the computing device in run time, identifying a compliance of at least some of the plurality of events, the plurality of processes, and the plurality of host activities with a plurality of rules, generating a rule compliance status dataset generated according to the compliance, identifying a match between the rule compliance status dataset and at least one of a plurality of reference profiles each indicative of a computing device operation under a malicious threat activity, and detecting a malicious threat according to the match.
机译:一种识别计算设备中一个或多个恶意威胁的方法。该设备包括在运行时监视在计算设备上发生的多个事件,在运行时在计算设备上执行的多个过程以及在运行时在计算设备的多个主机活动,以识别至少符合要求。具有多个规则的多个事件,多个过程和多个主机活动中的一些,生成根据遵从性生成的规则遵从性状态数据集,识别规则遵从性状态数据集与以下至少一项之间的匹配多个参考配置文件,每个参考配置文件指示计算设备在恶意威胁活动下的操作,并根据该匹配检测恶意威胁。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号