摘要
APT攻击最大的特点是利用应用漏洞进行零日攻击。文章基于应用安全理论,对白名单技术进行了延展,提出了与应用相关的新的访问控制模型。由此构成对重要信息系统的主动防御体系,实现更高的安全防护要求,有效防范APT攻击。
APT attack the biggest feature is used of application vulnerabilities to zero day attacks. In this paper based on application security theory, extended the whitelist technology, proposed assaciated with the application of a new access control model. Which constitutes active defense system, for important information systems, and achieve a higher level of protection, effectively preventing APT attacks.
出处
《信息网络安全》
2013年第10期188-190,共3页
Netinfo Security
关键词
白名单
应用安全
应用管控
主动防御
White-List
applicaiton security
application management and control
proactive protection