This application relates to the field of cryptographic
security testing technology, and discloses a method and apparatus for testing the access
password security of a cloud platform in a power
monitoring system. The method includes: first, acquiring access
password records and role information to generate a
password-role mapping table; then, constructing a permission
coupling structure and adding a time weight to form a permission
coupling evolution structure; collecting
system evolution factor data and normalizing it into security
erosion parameters; subsequently, starting with the access password, combining the permission
coupling evolution structure and the set of evolution factors to construct a permission-aware security degradation model and calculate the path degradation amplification coefficient; based on this coefficient, generating a permission-time joint security test
signal containing a comprehensive risk value, and determining the password security status by comparing it with a preset security threshold. This method can accurately identify high-risk passwords without affecting
system operation, meeting the
high security and high reliability requirements of the power industry.