A method for disguising malformed SIP messages to evade SIP IDS

被引:0
|
作者
机构
[1] Wang, Yulong
[2] Wang, Lei
来源
| 1600年 / Academy Publisher卷 / 08期
关键词
IDS evasion - Intrusion Detection Systems - IP multimedia subsystems - SIP (session initiation protocol) - Testing systems - VoIP systems;
D O I
10.4304/jsw.8.11.2830-2838
中图分类号
学科分类号
摘要
Malformed SIP attacks are threatening the security of VoIP system, such as IP Multimedia Subsystem, which uses SIP (Session Initiation Protocol) as its core protocol. Though IDSs (Intrusion Detection System) supporting malformed SIP detection had been produced, it was not clear to what extent they can detect disguised malformed SIP messages. This paper analyzes the condition of SIP IDS evasion and proposes a method for disguising malformed SIP messages. Based on the disguising method, a testing system is built for evaluation the capability of SIP IDS on evasion defending. The result of the experiments show that the proposed method can improve the evasion rate of malformed SIP messages considerably, which means the defending capability of SIP IDSs should be improved to prevent them from evasion. © 2013 ACADEMY PUBLISHER.
引用
收藏
相关论文
共 50 条
  • [1] A framework for detecting malformed messages in SIP networks
    Geneiatakis, D
    Kambourakis, G
    Dagiuklas, T
    Lambrinoudakis, C
    Gritzalis, S
    2005 14TH IEEE WORKSHOP ON LOCAL & METROPOLITAN AREA NETWORKS (LANMAN), 2005, : 189 - 193
  • [2] A parsing mode based method for malformed SIP messages testing for IMS network
    Wang, Yulong
    Wang, Dong
    Wang, Lei
    Journal of Networks, 2013, 8 (04) : 812 - 821
  • [3] Detection of malformed SIP messages based on map-reduce model
    Shuang, Kai
    Xia, Qian-Lin
    Beijing Youdian Daxue Xuebao/Journal of Beijing University of Posts and Telecommunications, 2014, 37 (06): : 11 - 16
  • [4] Effectiveness of SIP Messages on SIP Server
    Bansal, Abhishek
    Kulkarni, Prashant
    Pais, Alwyn R.
    2013 IEEE CONFERENCE ON INFORMATION AND COMMUNICATION TECHNOLOGIES (ICT 2013), 2013, : 616 - 621
  • [5] Smart profile: A new method for minimising SIP messages
    Meddahi, A
    Vanwormhoudt, G
    Afifi, H
    TELECOMMUNICATIONS AND NETWORKING - ICT 2004, 2004, 3124 : 688 - 697
  • [6] Method to Reduce SIP Signaling Messages during Glare Conditions
    Guduru, Kiran Kumar
    Usha, J.
    2015 IEEE INTERNATIONAL ADVANCE COMPUTING CONFERENCE (IACC), 2015, : 491 - 495
  • [7] An Approach to Resisting Malformed and Flooding Attacks on SIP Servers
    Su, Ming-Yang
    Tsai, Chen-Han
    JOURNAL OF NETWORKS, 2015, 10 (02) : 77 - 84
  • [8] Detection of SIP Flooding Attacks based on the Upper Bound of the Possible Number of SIP Messages
    Ryu, Jea-Tek
    Roh, Byeong-Hee
    Ryu, Ki-Yeol
    KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2009, 3 (05): : 507 - 526
  • [9] Automatic routing of semantic SIP messages in IMS
    Jacob, Carsten
    Pfeffer, Heiko
    Linner, David
    Steglich, Stephan
    Li Yan
    Ma Qifeng
    2008 2ND INTERNATIONAL CONFERENCE ON INTERNET MULTIMEDIA SERVICES ARCHITECTURE AND APPLICATION (IMSAA), 2008, : 18 - +
  • [10] Investigation of SIP Signaling Messages Servicing Time
    Jarutis, A.
    Gedmantas, R.
    Grimaila, V.
    ELEKTRONIKA IR ELEKTROTECHNIKA, 2011, (08) : 35 - 38