Network penetration testing scheme description language

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

Penetration testing is widely used to help ensure the security of the network. Traditional penetration testings were manually performed by tester according to scheme, the process is usually complex resulting in that it is labor-intensive and requires tester to be familiar with all kind of tools. So it is very desirable to use a unified method to describe the scheme which can be identified by computer, then the computer can be used to substitute for tester to perform penetration testing. A new method is presented to describe penetration testing scheme. We propose a language for tester to describe the penetration testing scheme. Based on the conceptual model of penetration testing scheme we design the penetration testing scheme description language (PTSDL) and outline the important EBNF. PTSDL is declarative abstracting the process of penetration testing which makes this language flexible, extensible and adaptable to new penetration testing method. Use of this language is illustrated by an experimental study, which shows that the language can effectively describe the penetration testing scheme.

Original languageEnglish
Title of host publicationProceedings - 2011 International Conference on Computational and Information Sciences, ICCIS 2011
Pages804-808
Number of pages5
DOIs
StatePublished - 2011
Event2011 International Conference on Computational and Information Sciences, ICCIS 2011 - Chengdu, Sichuan, China
Duration: 21 Oct 201123 Oct 2011

Publication series

NameProceedings - 2011 International Conference on Computational and Information Sciences, ICCIS 2011

Conference

Conference2011 International Conference on Computational and Information Sciences, ICCIS 2011
Country/TerritoryChina
CityChengdu, Sichuan
Period21/10/1123/10/11

Keywords

  • language
  • penetration testing
  • scheme

Fingerprint

Dive into the research topics of 'Network penetration testing scheme description language'. Together they form a unique fingerprint.

Cite this