Verify-Pro: A Framework for Server Authentication using Communication Protocol Dialects

被引:2
|
作者
Gogineni, Kailash [1 ]
Mei, Yongsheng [1 ]
Venkataramani, Guru [1 ]
Lan, Tian [1 ]
机构
[1] George Washington Univ, Dept Elect & Comp Engn, Washington, DC 20052 USA
关键词
Program customization; Protocol dialects; Deep learning; Authentication;
D O I
10.1109/MILCOM55135.2022.10017649
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Customizing program binary and communication features is a commonly adopted strategy to counter network security threats like session hijacking, context confusion, and impersonation attacks. A potential attacker may have enough time to launch an attack targeting these vulnerabilities by rerouting the target request to a malicious server or hijacking the traffic. This paper presents a novel system Verify-Pro, a framework for server authentication using communication protocol dialects by customizing the communication features, enforcing continuous authentication, detecting the adversary, and preventing sensitive information leakage. Specifically, we leverage a machine learning approach (pre-trained neural network model) on both client and server machines to trigger a specific dialect that dynamically changes for each request (e.g., get filename in FTP). Then, a decision tree algorithm is developed to automatically detect the adversary and terminate the entire session if the message is from an adversary. We implement a prototype of VerifyPro and evaluate its practicality on standard communication protocol: FTP (File Transfer Protocol) and present a case study of the internet of things protocol MQTT (Message Queuing Telemetry Transport). Our experimental results show that by sending misleading information through the message packets from an attacker at the application layer, it is possible for the recipient to identify if the sender is genuine or a spoofed one, with a negligible overhead of < 1%.
引用
收藏
页数:8
相关论文
共 49 条
  • [41] Upgrading a TCABR data analysis and acquisition system for remote participation using Java']Java, XML, RCP and modern client/server communication/authentication
    de Sa, W. P.
    FUSION ENGINEERING AND DESIGN, 2010, 85 (3-4) : 618 - 621
  • [42] Analyzing secure key authentication and key agreement protocol for promising features of IP multimedia subsystem using IP multimedia server-client systems
    Bakkiam David Deebak
    Rajappa Muthaiah
    Karuppuswamy Thenmozhi
    Pitchai Iyer Swaminathan
    Multimedia Tools and Applications, 2016, 75 : 2111 - 2143
  • [43] Lightweight remote user authentication protocol for multi-server 5G networks using self-certified public key cryptography
    Ying, Bidi
    Nayak, Amiya
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2019, 131 : 66 - 74
  • [44] Analyzing secure key authentication and key agreement protocol for promising features of IP multimedia subsystem using IP multimedia server-client systems
    Deebak, Bakkiam David
    Muthaiah, Rajappa
    Thenmozhi, Karuppuswamy
    Swaminathan, Pitchai Iyer
    MULTIMEDIA TOOLS AND APPLICATIONS, 2016, 75 (04) : 2111 - 2143
  • [45] SLAKA_CPS: Secured lightweight authentication and key agreement protocol for reliable communication among heterogenous devices in cyber-physical system framework
    Ramya, S.
    Doraipandian, Manivannan
    Amirtharajan, Rengarajan
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2024, : 2675 - 2691
  • [46] QAKA: A novel quantum authentication and key agreement (QAKA) protocol using quantum entanglement for secure communication among IoT devices
    Chawla, Diksha
    Mehra, Pawan Singh
    TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2024, 35 (03)
  • [47] Secure two-factor lightweight authentication protocol using self-certified public key cryptography for multi-server 5G networks
    ul Haq, Inam
    Wang, Jian
    Zhu, Youwen
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2020, 161
  • [48] Health care center's geolocation framework implementing hl7 communication protocol using mobile phone techonology
    Soto, Jaime
    TELEMATIQUE, 2010, 9 (03): : 79 - 101
  • [49] Linking genetic counseling communication skills to patient outcomes and experiences using a community-engagement and provider-engagement approach: research protocol for the GC-PRO mixed methods sequential explanatory study
    Fisher, Elena R.
    Cragun, Deborah
    Dedrick, Robert F.
    Lumpkins, Crystal Y.
    Ramirez, Mariana
    Kaphingst, Kimberly A.
    Petersen, Ashley
    Macfarlane, Ian M.
    Redlinger-Grosse, Krista
    Shire, Abdirashid
    Culhane-Pera, Kathleen A.
    Zierhut, Heather A.
    BMJ OPEN, 2024, 14 (04):