Netkuang { a Multi-host Connguration Vulnerability Checker

نویسندگان

  • Dan Zerkle
  • Karl Levitt
چکیده

NetKuang is an extension to Baldwin's SU-Kuang. It runs on networks of computers using Unix and can nd vulnerabilities created by poor system conngu-ration. Vulnerabilities are discovered using a backwards goal-based search that is breadth-rst on individual hosts and parallel when multiple hosts are checked. An implementation in C++ found real vul-nerabilities on production systems. Tests show reasonably fast performance on an LAN.

منابع مشابه

NetKuang - A Multi-Host Configuration Vulnerability Checker

NetKuang is an extension to Baldwin's SU-Kuang. It runs on networks of computers using Unix and can nd vulnerabilities created by poor system con guration. Vulnerabilities are discovered using a backwards goal-based search that is breadthrst on individual hosts and parallel when multiple hosts are checked. An implementation in C++ found real vulnerabilities on production systems. Tests show rea...

متن کامل

A Framework Based Approach for Formal Modeling and Analysis of Multi-level Attacks in Computer Networks

Attacks on computer networks are moving away from simple vulnerability exploits. More sophisticated attack types combine and depend on aspects on multiple levels (e.g. protocol and network level). Furthermore attacker actions, regular protocol execution steps, and administrator actions may be interleaved. Analysis based on human reasoning and simulation only has a slim chance to reveal attack p...

متن کامل

DHCP for IPv6

The Dynamic Host Connguration Protocol (DHCPv6) provides a framework for passing conngu-ration information, via extensions, to IPv6 nodes. It ooers the capability of automatic allocation of reusable network addresses and additional connguration exibil-ity. This protocol should be considered a stateful counterpart to the IPv6 Stateless Address Autoconnguration protocol speciication, and can be u...

متن کامل

Towards Practical Global Motion Planning for In-hand Manipulation of 3d Objects towards Practical Global Motion Planning for In-hand Manipulation of 3d Objects

| We describe a global motion planner for manipulating 3D objects by a dextrous multi-ngered robotic hand. We focus on the so-called re-connguration problem: nd a feasible quasi-static trajectory (motions and contact forces) that moves a hand-object system from an initial grasp to a nal desired connguration of the object. The planner is designed as a two-level process combining a graph search o...

متن کامل

Improving Software Security with Precise Static and Runtime Analysis a Dissertation Submitted to the Department of Computer Science and the Committee on Graduate Studies of Stanford University in Partial Fulfillment of the Requirements for the Degree of Doctor of Philosophy

The landscape of security vulnerabilities has changed dramatically in the last several years. While buffer overruns and format string violations accounted for a large fraction of all exploited vulnerabilities in the 1990s, the picture started to change in the first decade of the new millennium. As Web-based applications became more prominent, familiar buffer overruns are now far outnumbered by ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

متن کامل
عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 1996