Invention Grant
US09043920B2 System and method for identifying exploitable weak points in a network
有权
用于识别网络中可利用的弱点的系统和方法
- Patent Title: System and method for identifying exploitable weak points in a network
- Patent Title (中): 用于识别网络中可利用的弱点的系统和方法
-
Application No.: US13653834Application Date: 2012-10-17
-
Publication No.: US09043920B2Publication Date: 2015-05-26
- Inventor: Ron Gula , Renaud Deraison
- Applicant: Tenable Network Security, Inc.
- Applicant Address: US MD Columbia
- Assignee: TENABLE NETWORK SECURITY, INC.
- Current Assignee: TENABLE NETWORK SECURITY, INC.
- Current Assignee Address: US MD Columbia
- Agency: Muncy, Geissler, Olds & Lowe, P.C.
- Main IPC: G06F21/00
- IPC: G06F21/00 ; H04L29/06

Abstract:
The system and method described herein may leverage passive and active vulnerability discovery to identify network addresses and open ports associated with connections that one or more passive scanners observed in a network and current connections that one or more active scanners enumerated in the network. The observed and enumerated current connections may be used to model trust relationships and identify exploitable weak points in the network, wherein the exploitable weak points may include hosts that have exploitable services, exploitable client software, and/or exploitable trust relationships. Furthermore, an attack that uses the modeled trust relationships to target the exploitable weak points on a selected host in the network may be simulated to enumerate remote network addresses that could compromise the network and determine an exploitation path that the enumerated remote network addresses could use to compromise the network.
Public/Granted literature
- US20140007241A1 SYSTEM AND METHOD FOR IDENTIFYING EXPLOITABLE WEAK POINTS IN A NETWORK Public/Granted day:2014-01-02
Information query