NetKuang - A Multi-Host Configuration Vulnerability Checker
Dan Zerkle and Karl Levitt
Department of Computer Science
University of California at Davis
Abstract
NetKuang is an extension to Baldwin's SU-Kuang. It runs on networks
of computers using Unix and can find vulnerabilities created by poor
system configuration. Vulnerabilities are discovered using a
backwards, goal-based search that is breadth-first on individual hosts
and parallel when multiple hosts are checked. An implementation in
C++ found real vulnerabilities on production systems . Tests show
reasonably fast performance on a Lan.
View the full text of this paper in
POSTSCRIPT (195,532 Bytes) form.
To Become a USENIX Member, please see our
Membership Information.
|