电信科学 ›› 2013, Vol. 29 ›› Issue (12): 158-163.doi: 10.3969/j.issn.1000-0801.2013.12.026

• 运营创新论坛 • 上一篇    下一篇

面向企业网的APT攻击特征分析及防御技术探讨

刘东鑫,刘国荣,王帅,,沈军,金华敏   

  1. 中国电信股份有限公司广东研究院 广州510630
  • 出版日期:2013-12-20 发布日期:2017-07-04

Research on the Defense of Advanced Persistent Threats in Enterprise Network

Dongxin Liu,Guorong Liu,Shuai Wang,Jun Shen,Huamin Jin   

  1. Guangdong Research Institute of China Telecom Co., Ltd., Guangzhou 510630, China
  • Online:2013-12-20 Published:2017-07-04

摘要:

近年来,APT 攻击成为信息安全业界的关注热点。针对APT 攻击特征分析传统网络安全防御体系对其失效的原因,并在此基础上提出APT 攻击防御方案。该防御方案包括基础安全防御和动态防御体系,力求构建从保护、检测、响应到恢复的信息安全防御体系。最后,对 APT 攻击给业界带来的影响进行了思考和展望。

关键词: APT, 特征分析, 动态防御

Abstract:

Recently,advanced persistent threats have become a hot spot of information security industry as so many reports were taken about that some famous companies had been suffered from it. The features of APT and the reason why traditional security defense architecture was failed were discussed. After that, a solution was proposed to build a PDRR defense model. In the end, the impacts that APT brings in was discussed.

Key words: advanced persistent, threat, feature analysis, dynamic defense

No Suggested Reading articles found!