发明名称 SYSTEM AND METHOD FOR IDENTIFYING EXPLOITABLE WEAK POINTS IN A NETWORK
摘要 The system and method described herein may leverage passive and active vulnerability discovery to identify network addresses and open ports associated with connections that one or more passive scanners observed in a network and current connections that one or more active scanners enumerated in the network. The observed and enumerated current connections may be used to model trust relationships and identify exploitable weak points in the network, wherein the exploitable weak points may include hosts that have exploitable services, exploitable client software, and/or exploitable trust relationships. Furthermore, an attack that uses the modeled trust relationships to target the exploitable weak points on a selected host in the network may be simulated to enumerate remote network addresses that could compromise the network and determine an exploitation path that the enumerated remote network addresses could use to compromise the network.
申请公布号 US2014007241(A1) 申请公布日期 2014.01.02
申请号 US201213653834 申请日期 2012.10.17
申请人 TENABLE NETWORK SECURITY, INC. 发明人 GULA RON;DERAISON RENAUD
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址