Skip to content

Replay successful exploits to test automated mitigation systems #833

@ShayNehmad

Description

@ShayNehmad

Is your feature request related to a problem? Please describe.
Increase our ZT coverage in the Automation pillar

Describe the solution you'd like
If an exploit was successful, wait X minutes and re-run it (without dropping Monkey at the end of it).

After successful scan + exploit, wait X minutes (configurable?) and try again, and send telemetry with another field specifying this is a retry. If the retry succeeded, this is a test failure.

This test should probably be OFF by default, as it lengthens runtime significantly.

ZT info:

  • Pillars: Automation, Network, Devices
  • Principle: Orchestrate firewall rules and security policies to decrease security grunt work while helping to stop attacks.

Describe alternatives you've considered
Just adding this as a use case for the documentation and not as a streamlined part of the ZT report is obviously easier (no development).

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions