A Search Engine Backed by Internet-Wide Scanning

被引:229
|
作者
Durumeric, Zakir [1 ]
Adrian, David [1 ]
Mirian, Ariana [1 ]
Bailey, Michael [2 ]
Halderman, J. Alex [1 ]
机构
[1] Univ Michigan, Ann Arbor, MI 48109 USA
[2] Univ Illinois, Champaign, IL USA
基金
美国国家科学基金会;
关键词
D O I
10.1145/2810103.2813703
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Fast Internet-wide scanning has opened new avenues for security research, ranging from uncovering widespread vulnerabilities in random number generators to tracking the evolving impact of Heartbleed. However, this technique still requires significant effort: even simple questions, such as, "What models of embedded devices prefer CBC ciphers?", require developing an application scanner, manually identifying and tagging devices, negotiating with network administrators, and responding to abuse complaints. In this paper, we introduce Censys, a public search engine and data processing facility backed by data collected from ongoing Internet-wide scans. Designed to help researchers answer security-related questions, Censys supports full-text searches on protocol banners and querying a wide range of derived fields (e.g., 443. https. cipher). It can identify specific vulnerable devices and networks and generate statistical reports on broad usage patterns and trends. Censys returns these results in sub-second time, dramatically reducing the effort of understanding the hosts that comprise the Internet. We present the search engine architecture and experimentally evaluate its performance. We also explore Censys's applications and show how questions asked in recent studies become simple to answer.
引用
收藏
页码:542 / 553
页数:12
相关论文
共 50 条
  • [31] Remote Fingerprinting on Internet-wide Printers Based on Neural Network
    Yan, Zhaoteng
    Lv, Shichao
    Zhang, Yueyang
    Zhu, Hongsong
    Sun, Limin
    2019 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2019,
  • [32] An Internet-wide distributed system for data-stream processing
    Parmer, G
    West, R
    Qi, X
    Fry, G
    Zhang, YT
    IC'04: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON INTERNET COMPUTING, VOLS 1 AND 2, 2004, : 920 - 926
  • [33] A deeper understanding of SSH: Results from Internet-wide scans
    Gasser, Oliver
    Holz, Ralph
    Carle, Georg
    2014 IEEE NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM (NOMS), 2014,
  • [34] Internet-wide multipath: a scalability analysis of path identification schemes
    Misseri, Xavier
    Rougier, Jean-Louis
    Gojmerac, Ivan
    2012 THIRD INTERNATIONAL CONFERENCE ON THE NETWORK OF THE FUTURE (NOF), 2012, : 28 - 34
  • [35] Semantic copyright management for internet-wide knowledge sharing and reuse
    Garcia Gonzalez, Roberto
    Gil, Rosa
    ONLINE INFORMATION REVIEW, 2008, 32 (05) : 585 - 595
  • [36] Enabling High-Performance Internet-Wide Measurements on Windows
    Smith, Matt
    Loguinov, Dmitri
    PASSIVE AND ACTIVE MEASUREMENT, PROCEEDINGS, 2010, 6032 : 121 - 130
  • [37] Design & analysis of a distributed routing algorithm towards Internet-wide geocast
    Meijerink, Bernd
    Baratchi, Mitra
    Heijenk, Geert
    COMPUTER COMMUNICATIONS, 2019, 146 : 201 - 218
  • [38] 6Forest: An Ensemble Learning-based Approach to Target Generation for Internet-wide IPv6 Scanning
    Yang, Tao
    Cai, Zhiping
    Hou, Bingnan
    Zhou, Tongqing
    IEEE CONFERENCE ON COMPUTER COMMUNICATIONS (IEEE INFOCOM 2022), 2022, : 1679 - 1688
  • [39] An Internet-Wide View of Connected Cars: Discovery of Exposed Automotive Devices
    Ueda, Takahiro
    Sasaki, Takayuki
    Yoshioka, Katsunari
    Matsumoto, Tsutomu
    PROCEEDINGS OF THE 17TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, ARES 2022, 2022,
  • [40] Internet-Wide Scanners Classification using Gaussian Mixture and Hidden Markov Models
    De Santis, Giulia
    Lahmadi, Abdelkader
    Francois, Jerome
    Festor, Olivier
    2018 9TH IFIP INTERNATIONAL CONFERENCE ON NEW TECHNOLOGIES, MOBILITY AND SECURITY (NTMS), 2018,