Characterising Network Traffic for Skype Forensics

被引:11
|
作者
Azab, Ahmad [1 ]
Watters, Paul [1 ]
Layton, Robert [1 ]
机构
[1] Univ Ballarat, Internet Commerce Secur Lab ICSL, Ballarat, Vic 3353, Australia
关键词
component; Skype; VoIP; Security; Forensics;
D O I
10.1109/CTC.2012.14
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Voice over IP (VoIP) is increasingly replacing fixed line telephone systems globally due to lower cost, call quality improvements over digital lines and ease of availability. At the same time, criminals have also transitioned to using this environment, creating challenges for law enforcement, since interception of VoIP traffic is more difficult than a traditional telephony environment. One key problem for proprietary VoIP algorithms like Skype is being able to reliably identify and characterize network traffic. In this paper, the latest Skype version and its components are analyzed, in terms of network traffic behavior for logins, calls establishment, call answering and the change status phases. Network conditions tested included blocking different port numbers, inbound connections and outbound connections. The results provide a clearer view of the difficulties in characterizing Skype traffic in forensic contexts. We also found different changes from previous investigations into older versions of Skype.
引用
收藏
页码:19 / 27
页数:9
相关论文
共 50 条
  • [1] Clientside Skype Forensics - An Overview
    Meissner, Tina
    Kroeger, Knut
    Creutzburg, Reiner
    [J]. MOBILE MULTIMEDIA/IMAGE PROCESSING, SECURITY, AND APPLICATIONS 2012, 2012, 8406
  • [2] Active traffic capture for network forensics
    Slaviero, Marco
    Granova, Anna
    Olivier, Martin
    [J]. ADVANCES IN DIGITAL FORENSICS II, 2006, 222 : 215 - +
  • [3] TRAFFIC CLASSIFICATION AND APPLICATION IDENTIFICATION IN NETWORK FORENSICS
    Pluskal, Jan
    Lichtner, Ondrej
    Rysavy, Ondrej
    [J]. ADVANCES IN DIGITAL FORENSICS XIV, 2018, 532 : 161 - 181
  • [4] Skype traffic identification
    Perenyi, Marcell
    Gefferth, Andras
    Dang, Trang Dinh
    Molnar, Sandor
    [J]. GLOBECOM 2007: 2007 IEEE GLOBAL TELECOMMUNICATIONS CONFERENCE, VOLS 1-11, 2007, : 399 - 404
  • [5] Skype Multimedia Application Traffic Analysis on Home Unifi Network
    Kassim, Murizah
    Ramle, Siti Fatimah
    Ab Rahman, Ruhani
    Yusof, Mat Ikram
    [J]. 2017 IEEE SYMPOSIUM ON COMPUTER APPLICATIONS & INDUSTRIAL ELECTRONICS (ISCAIE), 2017, : 184 - 189
  • [6] Client-side Skype Forensics - An Overview
    Meissner, Tina
    Kroeger, Knut
    Creutzburg, Reiner
    [J]. MULTIMEDIA CONTENT AND MOBILE DEVICES, 2013, 8667
  • [7] Network Forensics for Encrypted SCADA Device Programming Traffic
    Mellish, Robert
    Graham, Scott
    Dunlap, Stephen
    [J]. PROCEEDINGS OF THE 16TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2021), 2021, : 465 - 472
  • [8] Tracking down Skype traffic
    Bonfiglio, Dario
    Mellia, Marco
    Meo, Michela
    Ritacca, Nicolo
    Rossi, Dario
    [J]. 27TH IEEE CONFERENCE ON COMPUTER COMMUNICATIONS (INFOCOM), VOLS 1-5, 2008, : 843 - 851
  • [9] Detailed Analysis of Skype Traffic
    Bonfiglio, Dario
    Mellia, Marco
    Meo, Michela
    Rossi, Dario
    [J]. IEEE TRANSACTIONS ON MULTIMEDIA, 2009, 11 (01) : 117 - 127
  • [10] On the identification and analysis of Skype traffic
    Molnar, Sandor
    Perenyi, Marcell
    [J]. INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2011, 24 (01) : 94 - 117