arXiv:2409.09174cs.CRcs.AI2024-09综述被引 1

为安全检测系统添加实时验证机制,确保虚拟网络与真实系统一致

Incorporation of Verifier Functionality in the Software for Operations and Network Attack Results Review and the Autonomous Penetration Testing System

  • 引入验证器动态检查真实环境并更新网络事实
  • 支持任意脚本和动态参数,提升系统灵活性
  • 适合安全测试、网络运维等需要高一致性的场景

用于操作与网络攻击结果审查的软件(SONARR)及自主渗透测试系统(APTS)利用数字孪生网络中的事实与通用属性来表示现实实体。然而,在某些情况下,事实值会频繁变动,导致SONARR和APTS中的对象难以持续准确地反映其真实对应物。本文提出并评估了在SONARR中加入验证器的方案,这些验证器可检查真实世界条件并更新网络事实。该机制使SONARR能从执行环境中获取事实值并更新网络,从而提供一种确保操作与结果始终与被评估真实系统一致的方法。验证器支持任意脚本和动态参数的添加,为常规SONARR操作增添灵活性与一致性,显著提升输出可靠性。

原文摘要 · Abstract (English)

The software for operations and network attack results review (SONARR) and the autonomous penetration testing system (APTS) use facts and common properties in digital twin networks to represent real-world entities. However, in some cases fact values will change regularly, making it difficult for objects in SONARR and APTS to consistently and accurately represent their real-world counterparts. This paper proposes and evaluates the addition of verifiers, which check real-world conditions and update network facts, to SONARR. This inclusion allows SONARR to retrieve fact values from its executing environment and update its network, providing a consistent method of ensuring that the operations and, therefore, the results align with the real-world systems being assessed. Verifiers allow arbitrary scripts and dynamic arguments to be added to normal SONARR operations. This provides a layer of flexibility and consistency that results in more reliable output from the software.

安全测试数字孪生自动化验证

Thank you to arXiv for use of its open access interoperability. PaperDance 不是 arXiv 官方产品;中文卡片由大模型生成,请以原文为准。