Webshell detection method based on incremental learning, terminal equipment and storage medium
A technology of incremental learning and detection methods, applied in the field of network security detection, can solve problems such as difficulty in establishing an accurate supervised learning model, difficulty in coping with complex real environments, and manual errors in analysis results, achieving accuracy and reliability, and reducing manpower Cost, the effect of reducing false negative rate and false positive rate
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment 1
[0046] The embodiment of the present invention provides a webshell detection method based on incremental learning, such as figure 1 shown, including the following steps:
[0047] S1: Collect webshell samples and normal samples, and extract features from the samples to form a training set.
[0048] The process of feature extraction includes the following two points:
[0049] (1) Using the Abstract Syntax Tree (AST) to perform semantic analysis on the sample, and obtain the function call set of the sample.
[0050] The samples collected in this embodiment are script files.
[0051] The abstract syntax tree is a tree-like representation of the abstract syntax structure of a programming language. It is used as the input of the compiler backend and does not depend on the details of the specific grammar and language. By analyzing the abstract syntax tree, an understanding of the semantic level of the code can be obtained. The generation process of the abstract syntax tree includ...
Embodiment 2
[0126] The present invention also provides a webshell detection terminal device based on incremental learning, including a memory, a processor, and a computer program stored in the memory and operable on the processor, and the processor executes the computer program The steps in the above method embodiment of Embodiment 1 of the present invention are realized at the same time.
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com