Covert channel detection in the ICMP payload using support vector machine

被引:0
|
作者
Sohn, T [1 ]
Moon, J [1 ]
Lee, S [1 ]
Lee, D [1 ]
Lim, J [1 ]
机构
[1] Korea Univ, Ctr Informat Secur Technol, Seoul, South Korea
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
ICMP traffic is ubiquitous to almost TCP/IP based network. As such, many network devices consider ICMP traffic to be benign and will allow it to pass through, unmolested. So, attackers can generate arbitrary information tunneling in the payload of ICMP packets. To detect a ICMP covert channel, we used SVM which has excellent performance in pattern classification problems. Our experiments showed that the proposed method could detect the ICMP covert channel from normal ICMP traffic using SVM.
引用
下载
收藏
页码:828 / 835
页数:8
相关论文
共 50 条
  • [1] Support vector machine based ICMP covert channel attack detection
    Sohn, T
    Noh, T
    Moon, J
    COMPUTER NETWORK SECURITY, 2003, 2776 : 461 - 464
  • [2] A study on the covert channel detection of TCP/IP header using support vector machine
    Sohn, T
    Seo, JT
    Moon, J
    INFORMATION AND COMMUNICATIONS SECURITY, PROCEEDINGS, 2003, 2836 : 313 - 324
  • [3] Evaluation of the IP Identification Covert Channel Anomalies Using Support Vector Machine
    Shehab, Manal
    Korany, Noha
    Sadek, Nayera
    2021 IEEE 26TH INTERNATIONAL WORKSHOP ON COMPUTER AIDED MODELING AND DESIGN OF COMMUNICATION LINKS AND NETWORKS (CAMAD), 2021,
  • [4] ICMP Covert Channel Resiliency
    Stokes, Kristian
    Yuan, Bo
    Johnson, Daryl
    Lutz, Peter
    TECHNOLOGICAL DEVELOPMENTS IN NETWORKING, EDUCATION AND AUTOMATION, 2010, : 503 - 506
  • [5] Covert Channel Detection Using Machine Learning
    Cavusoglu, Imge Gamze
    Alemdar, Hande
    Onur, Ertan
    2020 28TH SIGNAL PROCESSING AND COMMUNICATIONS APPLICATIONS CONFERENCE (SIU), 2020,
  • [6] A Support Vector Machine-Based Framework for Detection of Covert Timing Channels
    Shrestha, Pradhumna Lal
    Hempel, Michael
    Rezaei, Fahimeh
    Sharif, Hamid
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2016, 13 (02) : 274 - 283
  • [7] Detection of Covert Channels over ICMP Protocol
    Sayadi, Sirine
    Abbes, Tarek
    Bouhoula, Adel
    2017 IEEE/ACS 14TH INTERNATIONAL CONFERENCE ON COMPUTER SYSTEMS AND APPLICATIONS (AICCSA), 2017, : 1247 - 1252
  • [9] Covert Channel Detection: Machine Learning Approaches
    Elsadig, Muawia A.
    Gafar, Ahmed
    IEEE ACCESS, 2022, 10 : 38391 - 38405
  • [10] A Side Channel Attack Detection System Using Processor Core Events and a Support Vector Machine
    Oshana, Rob
    Thornton, Mitchell A.
    Caraman, Mike
    2022 11TH MEDITERRANEAN CONFERENCE ON EMBEDDED COMPUTING (MECO), 2022, : 176 - 183