| dc.contributor.advisor | Κοτζανικολάου, Παναγιώτης | |
| dc.contributor.author | Γιαννίκος, Παναγιώτης | |
| dc.date.accessioned | 2026-07-07T06:29:01Z | |
| dc.date.available | 2026-07-07T06:29:01Z | |
| dc.date.issued | 2026-07 | |
| dc.identifier.uri | https://dione.lib.unipi.gr/xmlui/handle/unipi/19506 | |
| dc.description.abstract | Η παρούσα μεταπτυχιακή διατριβή πραγματεύεται την ανάπτυξη ενός ολοκληρωμένου
μηχανισμού και διαδικασιών για την αυτοματοποιημένη απογραφή της επιφάνειας επίθεσης
(Attack Surface Management — ASM) και την έγκαιρη προειδοποίηση για γνωστές ευπάθειες.
Το εργαλείο, με την ονομασία WebSocRates ASM, υλοποιείται ως ενορχηστρωμένη ροή
εργασίας (pipeline) σε γλώσσα Python και αξιοποιεί αναγνωρισμένα εργαλεία ανοιχτού κώδικα
της κοινότητας ProjectDiscovery (subfinder, httpx, naabu, nuclei).
Η προσέγγιση διαρθρώνεται σε τρεις φάσεις: discovery (ανακάλυψη υποτομέων, ζωντανών
endpoints και ανοιχτών θυρών), validation (στοχευμένη σάρωση ευπαθειών με το nuclei) και
reporting (παραγωγή διαδραστικού HTML dashboard, εμπλουτισμένου με τη λίστα Known
Exploited Vulnerabilities της CISA, με προαιρετική αποστολή μέσω email). Παρουσιάζονται η
αρχιτεκτονική, οι λειτουργικές και μη λειτουργικές απαιτήσεις, καθώς και η συγκριτική
τοποθέτηση του εργαλείου έναντι υφιστάμενων λύσεων. | el |
| dc.format.extent | 27 | el |
| dc.language.iso | el | el |
| dc.publisher | Πανεπιστήμιο Πειραιώς | el |
| dc.rights | Αναφορά Δημιουργού-Μη Εμπορική Χρήση 3.0 Ελλάδα | * |
| dc.rights | Αναφορά Δημιουργού-Μη Εμπορική Χρήση 3.0 Ελλάδα | * |
| dc.rights.uri | http://creativecommons.org/licenses/by-nc/3.0/gr/ | * |
| dc.title | Ανάπτυξη ολοκληρωμένου μηχανισμού απογραφής και διαχείρισης επιφάνειας απειλών | el |
| dc.title.alternative | Development of an integrated mechanism for automated inventorying and Attack Surface Management (ASM) | el |
| dc.type | Master Thesis | el |
| dc.contributor.department | Σχολή Τεχνολογιών Πληροφορικής και Επικοινωνιών. Τμήμα Πληροφορικής | el |
| dc.description.abstractEN | This thesis addresses the development of an integrated mechanism and procedures for the
automated inventory of an organisation's attack surface (Attack Surface Management — ASM)
and the timely alerting on known vulnerabilities. The tool, named WebSocRates ASM, is
implemented as an orchestrated Python pipeline that combines well-established open-source
utilities from the ProjectDiscovery ecosystem (subfinder, httpx, naabu, nuclei).
The approach is structured in three phases: discovery (subdomains, live endpoints and open
ports), validation (targeted vulnerability scanning with nuclei) and reporting (generation of an
interactive HTML dashboard enriched with the CISA Known Exploited Vulnerabilities feed, with
optional email delivery). The architecture, the functional and non-functional requirements, and
a comparative positioning against existing solutions are presented. | el |
| dc.contributor.master | Κυβερνοασφάλεια και Επιστήμη Δεδομένων | el |
| dc.subject.keyword | Κυβερνοασφάλεια | el |
| dc.subject.keyword | Εξωτερική επιθετική επιφάνεια | el |
| dc.date.defense | 2026-07 | |