2016
DOI: 10.1002/sec.1531
|View full text |Cite
|
Sign up to set email alerts
|

DAT detectors: uncovering TCP/IP covert channels by descriptive analytics

Abstract: Covert channels provide means to conceal information transfer between hosts and bypass security barriers in communication networks. Hidden communication is of paramount concern for governments and companies, because it can conceal data leakage and malware communication, which are crucial building blocks used in cyber crime. We propose detectors based on descriptive analytics of traffic (DAT) to facilitate revealing network and transport layer covert channels originated from a wide spectrum of published data‐hi… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

1
29
0

Year Published

2017
2017
2024
2024

Publication Types

Select...
3
3

Relationship

2
4

Authors

Journals

citations
Cited by 13 publications
(30 citation statements)
references
References 47 publications
1
29
0
Order By: Relevance
“…As mentioned in Section 1, a recent classification of covert channels is presented in [12]. Moreover, DAT is introduced as a general methodology to identify covert channels in network traffic flows.…”
Section: Selected Featuresmentioning
confidence: 99%
See 4 more Smart Citations
“…As mentioned in Section 1, a recent classification of covert channels is presented in [12]. Moreover, DAT is introduced as a general methodology to identify covert channels in network traffic flows.…”
Section: Selected Featuresmentioning
confidence: 99%
“…Further derived studies that focus on covert timing channels are developed in [13] and [15]. Here we explore the features used in these three cited works ( [12,13] and [15]) and add five new features related to regularity and randomness in time and symbol series.…”
Section: Selected Featuresmentioning
confidence: 99%
See 3 more Smart Citations