会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明授权
    • Effective aggregation and presentation of database intrusion incidents
    • 数据库入侵事件的有效汇总和呈现
    • US07774361B1
    • 2010-08-10
    • US11177775
    • 2005-07-08
    • Carey NachenbergAbu WawdaAdam BromwichOn LeeDarren Sanders
    • Carey NachenbergAbu WawdaAdam BromwichOn LeeDarren Sanders
    • G06F7/00
    • G06F21/552G06F17/30306H04L63/1416Y10S707/952
    • An incident managing module aggregates related database intrusion incidents and presents them in a manageable manner. A receiving module receives an anomalous query requesting data from a database and a type-identification module identifies anomaly type for the query received. A conversion module converts the anomalous query into a characteristic representation. In some embodiments, this is done by replacing literal field values in the query with representative values. In other embodiments, this is done by creating a tuple describing anomaly parameters for the anomalous query. In still other embodiments, the query is converted into a characteristic representation that distinguishes between injected and non-injected portions of the query. An aggregation module then aggregates into a group the anomalous queries with substantially similar characteristic representations according to anomaly type and a generation module generates a database intrusion incident report describing the group of anomalous queries.
    • 事件管理模块聚合相关的数据库入侵事件,并以可管理的方式呈现。 接收模块接收从数据库请求数据的异常查询,并且类型识别模块识别所接收的查询的异常类型。 转换模块将异常查询转换为特征表示。 在一些实施例中,这通过用代表值替换查询中的文字字段值来完成。 在其他实施例中,这通过创建描述异常查询的异常参数的元组来完成。 在其他实施例中,将查询转换为区分注入的和非注入的查询部分的特征表示。 然后,聚合模块根据异常类型将具有基本类似特征表示的异常查询聚合成一组,生成模块生成描述异常查询组的数据库入侵事件报告。