摘要:
A feature extraction unit (11) extracts, from an advertising request to view an online advertisement, client information on a client as a transmission source of the advertising request and publisher information on a website of a publisher who displays advertising, and calculates a predetermined feature amount using the client information and the publisher information with respect to a plurality of advertising requests including at least a benign advertising request, and a determiner generation unit (12) generates a determiner (13) that determines whether an advertising request is malignant or not by using the calculated feature amount.
摘要:
A level estimation apparatus (10) receives event logs of events detected by each network device or application. Then, the level estimation apparatus (10) calculates the degrees of similarity among the events, and estimates a level of a predetermined event based on the calculated degrees of similarity among the events and a level of at least one of the events. Here, in the calculation of the degrees of similarity among the events, when calculating a degree of similarity between events detected by different network devices or applications, the level estimation apparatus (10) uses a degree of similarity to a common event, which is an event that has been detected mutually by the different network devices or applications.
摘要:
In receiving a MAC (media access control) frame whose destination address is any of a broadcast address, an unknown multicast address and an unknown unicast address, the flooding is reduced by broadcasting the received MAC frame to all the other ports than one that has received the MAC frame. An output control that attains this object is realized by using a destination group identifier (ID) look-up table (2-T1) which enables a look-up of a destination group ID by using, as a key, any one or combination of header information of the MAC frame, a port (2-C) which received the MAC frame and a service VLAN (virtual local area network) ID corresponding to the MAC frame and a backbone port look-up table (2-T2) which enables a look-up of at least one backbone port which is to transmit or at least one backbone port which is not to transmit by using the destination group ID as a key.
摘要:
To provide an unauthorized-access detection device (50) in which when a relationship between information regarding a request transmitted from a terminal operated by a user to a service server (10) that provides a service, which is acquired by a request acquisition unit (31), and information regarding a query transmitted from the service server (10) to a DB (20) that accumulates information regarding the service, which is acquired by a query acquisition unit (41), is different from a normal pattern, a detection unit (51) detects the query as unauthorized access to the DB (20).
摘要:
A data classification device (1) includes: a known data input unit (3) that receives an input of known data, the known data being data already classified into a class and a subclass subordinate to the class; a feature extraction unit (4) that extracts, from features included in the known data, a feature that causes classification of the known data belonging to the same class into a subclass using the feature to fail; and a classification unit (5) that classifies classification target data into a class using the feature extracted by the feature extraction unit (4) .