发明名称 K-ZERO DAY SAFETY
摘要 Systems and methods for determining a safety level of a network vulnerable to attack from at least one origin to at least one target are described. Machines, components, and vulnerabilities in a network may be associated to one another. Degrees of similarity among the vulnerabilities may be determined and subsets of vulnerabilities may be grouped based on their determined degrees of similarity to one another. This data may be used to generate an attack graph describing exploitation of vulnerabilities and grouped vulnerabilities and defining vulnerability exploit condition relationships between at least one origin and at least one target. The attack graph may be analyzed using a k-zero day metric function to determine a safety level.
申请公布号 US2012233699(A1) 申请公布日期 2012.09.13
申请号 US201213348457 申请日期 2012.01.11
申请人 发明人 JAJODIA SUSHIL;WANG LINGYU;NOEL STEVEN;SINGHAL ANOOP
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址