首页> 外文会议>IST-Africa 2016 Conference Proceedings >Survey of Media Access Control address spoofing attacks detection and prevention techniques in wireless networks
【24h】

Survey of Media Access Control address spoofing attacks detection and prevention techniques in wireless networks

机译:无线网络中媒体访问控制地址欺骗攻击检测与防御技术概述

获取原文
获取原文并翻译 | 示例
获取外文期刊封面目录资料

摘要

Wireless networks are used to access many services such as Internet banking, e-commerce, eHealth, and from many more systems that relay sensitive information. To connect to a wireless network a user needs to be authenticated by and be associated with an access point. Management frames and control frames are used for authentication, association and giving a user access to the wireless network. Management frames and control frames are sent in clear text and can expose the wireless network to security attacks such as media access control spoofing and session hijacking attacks. An attacker with the packet sniffer software can intercept packets and extract Media Access Control addresses of the access point or other users. MAC address is used to associate a client with the access point in wireless networks. An attacker can use a spoofed Media Access Control address of the real access point to disconnect the legitimate users from the network and takeover any existing TCP session that has already been established. Since the legitimate user is already authenticated in the network, an attacker with the spoofed MAC address will not require authentication. Such an exploitation of a valid computer session to gain unauthorized access to information or services through a network is referred to as session hijacking attack. There are proposed methods for dealing with MAC address spoofing. Some methods produce lots of false positives and false negatives while others require a lot of infrastructural overhead as well as computational overhead. In this study some of the existing MAC addresses spoofing detection and prevention methods are reviewed, with strengths and weaknesses analysed. Factors considered in the analysis include reliability and robustness of the methods, and performance in terms of computational overhead and efficiency.
机译:无线网络用于访问许多服务,如Internet银行,电子商务,eHealth,以及从中继敏感信息的许多其他系统中访问。为了连接到无线网络,用户需要通过接入点进行身份验证并与之关联。管理帧和控制帧用于身份验证,关联并为用户提供对无线网络的访问权限。管理帧和控制帧以明文形式发送,可使无线网络遭受安全攻击,例如媒体访问控制欺骗和会话劫持攻击。使用数据包嗅探器软件的攻击者可以拦截数据包并提取访问点或其他用户的媒体访问控制地址。 MAC地址用于将客户端与无线网络中的接入点相关联。攻击者可以使用真实访问点的欺骗性媒体访问控制地址来使合法用户与网络断开连接,并接管任何已经建立的现有TCP会话。由于合法用户已经在网络中进行了身份验证,因此具有欺骗性MAC地址的攻击者将不需要身份验证。对有效计算机会话的这种利用,以通过网络获得对信息或服务的未授权访问,称为会话劫持攻击。已经提出了用于处理MAC地址欺骗的方法。有些方法会产生很多误报和误报,而另一些则需要大量的基础架构开销和计算开销。在这项研究中,回顾了一些现有的MAC地址欺骗检测和预防方法,并分析了其优缺点。分析中考虑的因素包括方法的可靠性和鲁棒性,以及在计算开销和效率方面的性能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号