首页> 外文学位 >Two classes of novel TCP exploits and the countermeasures.
【24h】

Two classes of novel TCP exploits and the countermeasures.

机译:两类新颖的TCP漏洞及其对策。

获取原文
获取原文并翻译 | 示例

摘要

This thesis presents two classes of novel TCP exploits and the countermeasures. In the first exploit, we have proposed a new breed of low-rate Denial-of-Service (DoS) attacks, referred to as pulsing DoS (PDoS) attacks, which abuse TCP congestion control mechanisms to throttle a victim's throughput. Comparing with traditional flooding-based DoS attacks, PDoS attacks use much less attack traffic to cause similar damage to TCP flows. Besides TCP, the dominant transport protocol today, the emerging SCTP and DCCP will also be vulnerable to PDoS attacks. On the defense side, we have proposed two new effective schemes to detect PDoS attacks. In the second exploit, we have proposed two novel network timing channels, TCPScript and Cloak, which facilitate stealthy communications in the Internet. By exploiting TCP's flow concept, sliding window, and acknowledgement mechanisms, TCPScript and Cloak provide much higher channel capacity, camouflage flexibility, and reliability than existing covert channels. Since the protocol features exploited by TCPScript and Cloak are widely adopted by modem transport protocols, similar covert channels could be imbedded in other protocols. We have also proposed new detection schemes to uncover TCPScript and Cloak channels.
机译:本文提出了两类新颖的TCP漏洞利用方法和对策。在第一个漏洞利用中,我们提出了一种新型的低速率拒绝服务(DoS)攻击,称为脉冲DoS(PDoS)攻击,该攻击滥用TCP拥塞控制机制来限制受害者的吞吐量。与传统的基于泛洪的DoS攻击相比,PDoS攻击使用更少的攻击流量来对TCP流造成类似的破坏。除了当今主要的传输协议TCP外,新兴的SCTP和DCCP也将容易受到PDoS攻击。在防御方面,我们提出了两种新的有效方案来检测PDoS攻击。在第二个漏洞利用中,我们提出了两个新颖的网络计时通道,TCPScript和Cloak,它们促进了Internet中的隐身通信。通过利用TCP的流概念,滑动窗口和确认机制,TCPScript和Cloak提供了比现有隐蔽通道更高的通道容量,伪装灵活性和可靠性。由于TCPScript和Cloak利用的协议功能已被调制解调器传输协议广泛采用,因此类似的隐蔽通道可以嵌入其他协议中。我们还提出了新的检测方案来发现TCPScript和Cloak通道。

著录项

  • 作者

    Luo, Xiapu.;

  • 作者单位

    Hong Kong Polytechnic University (Hong Kong).;

  • 授予单位 Hong Kong Polytechnic University (Hong Kong).;
  • 学科 Computer science.
  • 学位 Ph.D.
  • 年度 2007
  • 页码 219 p.
  • 总页数 219
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号