- 专利标题: Model-based computer attack analytics orchestration
-
申请号: US15201186申请日: 2016-07-01
-
公开(公告)号: US10262132B2公开(公告)日: 2019-04-16
- 发明人: Philipp Reinecke , Marco Casassa Mont , Yolanta Beresna
- 申请人: Hewlett Packard Enterprise Development LP
- 申请人地址: US CA Sunnyvale
- 专利权人: ENTIT SOFTWARE LLC
- 当前专利权人: ENTIT SOFTWARE LLC
- 当前专利权人地址: US CA Sunnyvale
- 主分类号: G06F11/00
- IPC分类号: G06F11/00 ; G06F21/55 ; G06F16/903 ; G06F21/56 ; H04L29/06 ; G06F17/30 ; G06F21/57 ; G06N5/02 ; G06F12/14
摘要:
Examples relate to model-based computer attack analytics orchestration. In one example, a computing device may: generate, using an attack model that specifies behavior of a particular attack on a computing system, a hypothesis for the particular attack, the hypothesis specifying, for a particular state of the particular attack, at least one attack action; identify, using the hypothesis, at least one analytics function for determining whether the at least one attack action specified by the hypothesis occurred on the computing system; provide an analytics device with instructions to execute the at least one analytics function on the computing system; receive analytics results from the analytics device; and update a state of the attack model based on the analytics results.
公开/授权文献
- US20180004941A1 MODEL-BASED COMPUTER ATTACK ANALYTICS ORCHESTRATION 公开/授权日:2018-01-04
信息查询