2008 New Technologies, Mobility and Security 2008
DOI: 10.1109/ntms.2008.ecp.101
|View full text |Cite
|
Sign up to set email alerts
|

Towards Optimized TCP/IP Covert Channels Detection, IDS and Firewall Integration

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
4
1

Citation Types

0
5
0

Year Published

2010
2010
2020
2020

Publication Types

Select...
5
1
1

Relationship

0
7

Authors

Journals

citations
Cited by 11 publications
(7 citation statements)
references
References 5 publications
0
5
0
Order By: Relevance
“…Most studies on the detection of storage covert channels were tested with a single popular tool (e.g. Covert-TCP), [47], [48], [51], [49] [42], [52], [53] with captured traffic [45], [46], [44], [48] or with a personalized developed tool for the purpose of research work [47]. The authors of this paper propose a detection concept that uses ML with 3 different algorithms, which are not based on own particular developed techniques but on popular tools instead.…”
Section: Fundamentals and Related Workmentioning
confidence: 99%
“…Most studies on the detection of storage covert channels were tested with a single popular tool (e.g. Covert-TCP), [47], [48], [51], [49] [42], [52], [53] with captured traffic [45], [46], [44], [48] or with a personalized developed tool for the purpose of research work [47]. The authors of this paper propose a detection concept that uses ML with 3 different algorithms, which are not based on own particular developed techniques but on popular tools instead.…”
Section: Fundamentals and Related Workmentioning
confidence: 99%
“…This explains why detection of covert communication is considered a big issue that faces security systems. Moreover, covert channels are not only used for the exchange of hidden information but could be exploited to pass malicious messages [2], Trojans, viruses, etc. in ways that couldn't be detected by common firewalls or detection systems.…”
Section: Introductionmentioning
confidence: 99%
“…Commonly, it is known that covert channels cannot be fully eliminated [3,4]. But there is a possibility that they could be reduced through careful analysis and design [2].…”
Section: Introductionmentioning
confidence: 99%
“…In the past few years, a wide variety of enumerationresistant distribution strategies [6], [7], [8], [9] were proposed and adopted by practical systems like Tor, JAP, etc. On the other hand, though traffic analysis-resistant technologies like encryption, protocol obfuscation [10], covert communication [11] are adopted in the communication between users and the access points, there still exists a possibility for the adversary to detect the communication between them [12], [13], [14], [15]. Once the connection is detected, the adversary can interrupt it and prevent any future connection attempts to the access point.…”
Section: Introductionmentioning
confidence: 99%