- 专利标题: Using access logs for network entities type classification
-
申请号: US16233074申请日: 2018-12-26
-
公开(公告)号: US11301496B2公开(公告)日: 2022-04-12
- 发明人: Shiri Margel , Yury Geiler
- 申请人: Imperva, Inc.
- 申请人地址: US CA Redwood City
- 专利权人: Imperva, Inc.
- 当前专利权人: Imperva, Inc.
- 当前专利权人地址: US CA Redwood City
- 代理机构: Nicholson, De Vos, Webster & Elliott, LLP
- 主分类号: G06F15/173
- IPC分类号: G06F15/173 ; G06F16/28 ; H04L43/04 ; H04L29/06
摘要:
A method by a security system implemented by one or more electronic devices for detecting attacks on one or more databases hosted by one or more database servers. The method includes classifying, based on analyzing database logs of the one or more databases, a plurality of network entities used to access the one or more databases into different network entity types, where one or more of the plurality of network entities can be classified into the same network entity type and using a result of the classification of the plurality of network entities to detect attacks on the one or more databases.
公开/授权文献
信息查询