US 12,436,976 B2
Information analysis apparatus, information analysis method, and computer-readable recording medium
Masaru Kawakita, Tokyo (JP)
Assigned to NEC CORPORATION, Tokyo (JP)
Appl. No. 18/283,097
Filed by NEC Corporation, Tokyo (JP)
PCT Filed Mar. 23, 2021, PCT No. PCT/JP2021/011985
§ 371(c)(1), (2) Date Sep. 20, 2023,
PCT Pub. No. WO2022/201307, PCT Pub. Date Sep. 29, 2022.
Prior Publication US 2024/0311401 A1, Sep. 19, 2024
Int. Cl. G06F 16/33 (2025.01); G06F 21/57 (2013.01)
CPC G06F 16/33 (2019.01) [G06F 21/577 (2013.01)] 15 Claims
OG exemplary drawing
 
1. An information analysis apparatus comprising:
at least one memory storing instructions; and
at least one processor configured to execute the instructions to:
extract, from a database storing technical information regarding cyberattacks, technical information related to damage information regarding a cyberattack included in a news article, based on a time of occurrence of damage from a cyberattack;
calculate a similarity between the damage information and the extracted technical information;
specify technical information corresponding to the damage information based on the calculated similarity;
supplement the news article that includes the damage information with the specified technical information, wherein
the information analysis apparatus is connected to a technical information database so as to enable data communication, and
the technical information database stores trace information, including information on vulnerabilities of an attacked system, a name of software used in a cyberattack, and tactics of a cyberattack;
generate technical information from log information generated by a computer system;
store the generated technical information in the technical information database;
update the technical information database;
display a user interface in which
the news article is supplemented with the technical information,
a portion of the news article enclosed by frame lines is the damage information, and
the damage information in the news article is provided with labels indicating corresponding attributes; and
transmit the supplemented news article to a terminal apparatus via a network to cause the terminal apparatus to store the supplemented news article,
wherein a searcher inputs a search query on the terminal apparatus, such that the terminal specifies the supplemented news article that matches the search query, and displays the specified news article on a screen of the terminal apparatus.