首页> 外国专利> Apparatus and Method for estimating automated network penetration path based on network reachability

Apparatus and Method for estimating automated network penetration path based on network reachability

机译:基于网络可达性估计自动化网络渗透路径的装置和方法

摘要

The present invention relates to a network technique. More specifically, the present invention relates to a device and a method for predicting a penetration path, which analyze a vulnerability of a network system for a network manager in a network environment having complex network connection and/or multiple vulnerabilities, present an attack graph by quantitative evaluation from outside or inside and present an optimal penetration path from the attack graph. The device for predicting an automated penetration path based on network reachability comprises: an information collection part collecting network information having network reachability based on a subnet structure, pre-analyzed network vulnerability information and pre-set exploit information; a quantification part quantifying the vulnerability information and the exploit information, and calculating a risk level; a vulnerability analyzing part analyzing a final vulnerability by using the network reachability and the risk level; and a graph generating part generating the attack graph by using the final vulnerability.
机译:本发明涉及网络技术。更具体地,本发明涉及一种用于预测渗透路径的设备和方法,其针对具有复杂网络连接和/或多个漏洞的网络环境中的网络管理器分析网络系统的脆弱性,通过以下方式呈现攻击图:从外部或内部进行定量评估,并从攻击图中显示最佳渗透路径。一种基于网络可达性的自动渗透路径预测装置,包括:信息收集部分,其基于子网结构,预先分析的网络脆弱性信息和预设利用信息,收集具有网络可达性的网络信息。量化部分,对漏洞信息和利用信息进行量化,并计算风险等级;漏洞分析部分,利用网络可达性和风险等级,对最终漏洞进行分析。图生成部利用最终的脆弱性生成攻击图。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号