首页> 外文会议>IEEE International Conference on Trust, Security and Privacy in Computing and Communications >Development and Analysis of Generic VoIP Attack Sequences Based on Analysis of Real Attack Traffic
【24h】

Development and Analysis of Generic VoIP Attack Sequences Based on Analysis of Real Attack Traffic

机译:基于实际攻击交通分析的通用VoIP攻击序列的开发与分析

获取原文

摘要

Security issues like service misuse and fraud are emerging problems of SIP-based networks. To devise effective countermeasures it is important to know how these attacks are launched in reality. Multi-stage attacks to commit Toll Fraud are already known in principle. We have identified different variations in these attack patterns by analyzing over 25 GByte of SIP attack traffic collected in our SIP Honeynet over a period of three years i.e., from December 2009 to November 2012. Based on this analysis, we have developed a Generic Attack Replay tool (GART) which allows replaying samples of the major attack variants in arbitrary network setups. This tool can be used for evaluation of detection and mitigation components where realistic and reproducible attack traffic is needed. The tool described here and the sample database will be made available to interested groups.
机译:服务滥用和欺诈等安全问题正在出现基于SIP的网络的问题。为了制定有效的对策,重要的是要知道如何在现实中发起这些攻击。原则上已知多阶段攻击犯罪欺诈。我们通过在三年内的SIP HoneyNet中收集的SIP攻击流量超过25 GB,从2009年12月到2012年11月,通过分析了超过25 GB的SIP攻击流量来确定了这些攻击模式的不同变化。根据此分析,我们已经开发了一篇通用攻击重播允许在任意网络设置中重放主要攻击变量的样本的工具(GART)。该工具可用于评估检测和缓解部件,其中需要现实和可重复的攻击流量。此处描述的工具和示例数据库将可供有关组使用。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号