Network security alarm method and device, electronic equipment and storage medium

The invention provides a network security alarm method and apparatus, an electronic device and a storage medium. The method comprises the steps of collecting real-time network data corresponding to a target network; marking a real-time marked data stream comprising an entity mark and a vulnerability...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: ZHANG XIANGJIANG, WANG YU
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The invention provides a network security alarm method and apparatus, an electronic device and a storage medium. The method comprises the steps of collecting real-time network data corresponding to a target network; marking a real-time marked data stream comprising an entity mark and a vulnerability feature mark through a real-time calculation data stream engine; normalizing the real-time marked data stream and the batch processing data stream corresponding to the self-storage layer through a stream batch integrated data stream engine, and determining a normalized data stream corresponding to the real-time network data; inputting the normalized data stream into a resource aggregation engine, identifying and marking resource data corresponding to the normalized data stream, and storing the resource data into a relational database; and inputting the normalized data stream into an alarm engine, executing an alarm rule according to the entity mark and the vulnerability feature mark, and triggering an alarm event.