×

SYSTEMS AND METHODS FOR SELECTING A LATERAL MOVEMENT STRATEGY FOR A PENETRATION TESTING CAMPAIGN

  • US 20180219903A1
  • Filed: 01/12/2018
  • Published: 08/02/2018
  • Est. Priority Date: 01/30/2017
  • Status: Active Grant
First Claim
Patent Images

1. A method of penetration testing of a networked system by a penetration testing system that is controlled by a user interface of a computing device so that a penetration testing campaign is executed according to a lateral movement strategy of an attacker of the penetration testing campaign, the method comprising:

  • a. automatically selecting, by the penetration testing system, one lateral movement strategy from a group of multiple lateral movement strategies available for use in the penetration testing campaign;

    wherein the automatic selecting is done by randomly selecting the one lateral movement strategy from the group of lateral movement strategies;

    b. executing the penetration testing campaign, by the penetration testing system and according to the automatically selected lateral movement strategy of the attacker, so as to test the networked system; and

    c. reporting, by the penetration testing system, at least one security vulnerability determined to exist in the networked system by the executing of the penetration testing campaign, wherein the reporting comprises at least one of (i) causing a display device to display a report describing the at least one security vulnerability, (ii) storing the report describing the at least one security vulnerability in a file, and (iii) electronically transmitting the report describing the at least one security vulnerability.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×