Hidden Network Vulnerability Scanning via Target Device Intermediary
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing network vulnerability scanning systems are unable to scan hidden networks that are inaccessible to them, leaving connected devices vulnerable to security threats from these unseen systems.
Innovation Solution
A network vulnerability scanning system installs a network scanning application on a target device to scan for and identify vulnerabilities in hidden networks by establishing a connection through the target device, allowing for real-time or near real-time scanning of these otherwise unreachable systems.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a network vulnerability scanning system attempts to scan hidden networks directly, then it cannot access these networks at all, but if it uses a target device as an intermediary, then it can scan hidden networks while increasing system complexity
Solution Approach 1:
The patent uses a target device as an intermediary to access hidden networks. The vulnerability scanning system installs a scanning application on the target device, which then scans the hidden network through the target device's network connections. This intermediary approach enables access to previously unreachable networks while maintaining a manageable system architecture.
2Reliability
If a vulnerability scanning application is installed on a target device to scan hidden networks, then scanning capability is improved, but the time required for installation and scanning increases
Solution Approach 1:
The vulnerability scanning application is installed on the target device in advance, before the actual scanning operation is needed. This preliminary installation allows the scanning system to quickly initiate scans of hidden networks without delays associated with on-demand installation, thereby reducing the overall time loss while maintaining enhanced detection capability.
3Reliability
If the scanning system only scans devices directly accessible on the network, then the scanning process is simple and fast, but hidden networks and their vulnerabilities remain undetected
Solution Approach 1:
The patent extends the scanning capability from the direct network dimension to an indirect dimension by utilizing the target device's network interfaces and connections. This dimensional change allows the scanning system to access hidden networks that are not directly reachable, thereby improving security assessment completeness without significantly complicating the detection process.
Data Source
AI summary
A network vulnerability scanning system scans a target device for vulnerabilities to obtain network connection data for the target device. The network vulnerability scanning system determines the network connection data includes a network connection between the target device and a hidden network system. The network vulnerability scanning system installs a network scanning application on the target device in response to determining the network connection data includes the network connection between the target device and the hidden network system. The network vulnerability scanning system scans the hidden network system for vulnerabilities via the network scanning application installed on the target device.


