Network domain security detection method and device based on domain environment

The invention relates to the technical field of network security, and discloses a network domain security detection method and device based on a domain environment, which can detect weak points in the domain environment in an omnibearing manner, so as to discover an attack path possibly used by an a...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: XIAO XINGUANG, ZHANG KANG, YOON SANG-SEO
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The invention relates to the technical field of network security, and discloses a network domain security detection method and device based on a domain environment, which can detect weak points in the domain environment in an omnibearing manner, so as to discover an attack path possibly used by an attacker and prevent the attacker from acquiring the authority of logging in a domain control host. The method comprises the following steps: collecting domain environment information of a network domain; extracting relation information and/or user information from the domain environment information; the relation information comprises connection relations between the domain hosts and the domain control hosts, the user information comprises user login information and domain administrator accounts, the user login information comprises user accounts logged in the domain hosts, and the domain administrator accounts are user accounts having the right to log in the domain control hosts; based on the relation information a