Multi-step attack detection method based on network communication anomaly recognition

In view of the characteristics of internal fixed business logic,inbound and outbound network access behavior,two classes and four kinds of abnormal behaviors were defined firstly,and then a multi-step attack detection method was proposed based on network communication anomaly recognition.For abnorma...

Full description

Saved in:
Bibliographic Details
Main Authors: Ankang JU, Yuanbo GUO, Tao LI, Ziwei YE
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2019-07-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2019142/
Tags: Add Tag
No Tags, Be the first to tag this record!