Catch Me If You Can: Dynamic Concealment of Network Entities

被引:5
|
作者
Fraunholz, Daniel [1 ]
Krohmer, Daniel [1 ]
Anton, Simon Duque [1 ]
Schotten, Hans Dieter [1 ]
机构
[1] German Res Ctr Artificial Intelligence, Kaiserslautern, Germany
关键词
Information security; Deception; Moving target defense; Network mutation; SECURITY;
D O I
10.1145/3268966.3268970
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In this paper, a framework for Moving Target Defense is introduced. This framework bases on three pillars: network address mutation, communication stack randomization and the dynamic deployment of decoys. The network address mutation is based on the concept of domain generation algorithms, where different features are included to fulfill the system requirements. Those requirements are time dependency, unpredictability and determinism. Communication stack randomization is applied additionally to increase the complexity of reconnaissance activity. By employing communication stack randomization, previously fingerprinted systems do not only differ in the network address but also in their communication pattern behavior. And finally, decoys are integrated into the proposed framework to detect attackers that have breached the perimeter. Furthermore, attacker's resources can be bound by interacting with the decoy systems. Additionally, the framework can be extended with more advanced Moving Target Defense methods such as obscuring port numbers of services.
引用
收藏
页码:31 / 39
页数:9
相关论文
共 50 条
  • [31] Influence in Action in Catch Me if You Can
    Meyer, Gary
    Roberto, Anthony J.
    COMMUNICATION TEACHER, 2005, 19 (01) : 23 - 27
  • [32] Tuberculosis in hemodialysis: Catch me if you can
    Asserraji, Mohammed
    Zeroual, Ahmed
    Azami, Amine
    Maoujoud, Omar
    El-Barni, Rachid
    Zemraoui, Nadir
    INDIAN JOURNAL OF NEPHROLOGY, 2022, 32 (06) : 640 - 641
  • [33] Catch Me if You Can or Actors on the Run
    Egesten, Arne
    Herwald, Heiko
    JOURNAL OF INNATE IMMUNITY, 2019, 11 (01) : 1 - 2
  • [34] HIV fusion: Catch me if you can
    Denolly, Solene
    Cosset, Francois-Loic
    JOURNAL OF BIOLOGICAL CHEMISTRY, 2020, 295 (45) : 15196 - 15197
  • [35] Don't catch me if you can
    Nature Structural & Molecular Biology, 2004, 11 : 385 - 385
  • [36] Catch me if you can [power coal]
    Venables, M., 1600, Institution of Engineering and Technology (07):
  • [37] Future Tense Catch Me If You Can
    Benford, Gregory
    COMMUNICATIONS OF THE ACM, 2011, 54 (03) : 110 - 111
  • [38] Catch me if you can: Cyber Anonymity
    Rohret, David
    Kraft, Michael
    PROCEEDINGS OF THE 6TH INTERNATIONAL CONFERENCE ON INFORMATION WARFARE AND SECURITY, 2011, : 213 - 220
  • [39] Catch Me if You Can: Effective Honeypot Placement in Dynamic AD Attack Graphs
    Ngo, Huy Q.
    Guo, Mingyu
    Nguyen, Hung
    IEEE INFOCOM 2024-IEEE CONFERENCE ON COMPUTER COMMUNICATIONS, 2024, : 451 - 460
  • [40] Catch Me If You Can! Transparent Detection Of Shellcode
    Buhov, Damjan
    Thron, Richard
    Schrittwieser, Sebastian
    PROCEEDINGS OF 2016 INTERNATIONAL CONFERENCE ON SOFTWARE SECURITY AND ASSURANCE (ICSSA), 2016, : 60 - 63