Hidden Network Vulnerability Scanning via Target Device Intermediary

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing network vulnerability scanning systems are unable to scan hidden networks that are inaccessible to them, leaving connected devices vulnerable to security threats from these unseen systems.

Innovation Solution

A network vulnerability scanning system installs a network scanning application on a target device to scan for and identify vulnerabilities in hidden networks by establishing a connection through the target device, allowing for real-time or near real-time scanning of these otherwise unreachable systems.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a network vulnerability scanning system attempts to scan hidden networks directly, then it cannot access these networks at all, but if it uses a target device as an intermediary, then it can scan hidden networks while increasing system complexity

Engineering Contradiction:
Improvesecurity coverageVSAvoidscanning system architecture
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent uses a target device as an intermediary to access hidden networks. The vulnerability scanning system installs a scanning application on the target device, which then scans the hidden network through the target device's network connections. This intermediary approach enables access to previously unreachable networks while maintaining a manageable system architecture.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If a vulnerability scanning application is installed on a target device to scan hidden networks, then scanning capability is improved, but the time required for installation and scanning increases

Engineering Contradiction:
Improvevulnerability detection capabilityVSAvoidscanning preparation and execution time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The vulnerability scanning application is installed on the target device in advance, before the actual scanning operation is needed. This preliminary installation allows the scanning system to quickly initiate scans of hidden networks without delays associated with on-demand installation, thereby reducing the overall time loss while maintaining enhanced detection capability.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If the scanning system only scans devices directly accessible on the network, then the scanning process is simple and fast, but hidden networks and their vulnerabilities remain undetected

Engineering Contradiction:
Improvesecurity assessment completenessVSAvoidnetwork accessibility
Core Design Contradiction:
ReliabilityVSDifficulty of detecting and measuring

Solution Approach 1:

The patent extends the scanning capability from the direct network dimension to an indirect dimension by utilizing the target device's network interfaces and connections. This dimensional change allows the scanning system to access hidden networks that are not directly reachable, thereby improving security assessment completeness without significantly complicating the detection process.

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

Data Source

PatentUS12549585B2Vulnerability scanning of hidden network systems
Publication Date: 2026.02.10 CHARTER COMM OPERATING LLC
  • US12549585B2 patent drawing
  • US12549585B2 patent drawing
  • US12549585B2 patent drawing

AI summary

A network vulnerability scanning system scans a target device for vulnerabilities to obtain network connection data for the target device. The network vulnerability scanning system determines the network connection data includes a network connection between the target device and a hidden network system. The network vulnerability scanning system installs a network scanning application on the target device in response to determining the network connection data includes the network connection between the target device and the hidden network system. The network vulnerability scanning system scans the hidden network system for vulnerabilities via the network scanning application installed on the target device.