【24h】

IPv6: Nowhere to Run, Nowhere to Hide

机译:IPv6:无处可跑,无处可藏

获取原文

摘要

Due to a large address space, Internet Protocol version 6 (IPv6) uses stateless address autoconfiguration to assign network addresses to hosts. This unmanaged technique creates a static value derived from the Media Access Control (MAC) address of a network interface as the host portion, or interface identifier (IID). Static IID assignment provides third parties (whether malicious or not) with the ability to track a node's physical location, correlate network traffic with a specific user, and collect details about a node's operating system. Using our live production IPv6 network, we demonstrate not only the feasibility of IID monitoring, but also the ease with which an attacker can accomplish it. We then highlight some possible nefarious applications where IPv6 address tracking and analysis could assist the cyber criminal. In order to prevent this privacy breach, we offer solutions that disassociate the IPv6 address from its user.
机译:由于地址空间大,Internet协议版本6(IPv6)使用无状态地址自动配置为主机分配网络地址。这种不受管理的技术会创建一个静态值,该值是从网络接口的媒体访问控制(MAC)地址作为主机部分得出的,或者是接口标识符(IID)。静态IID分配为第三方(无论是否恶意)提供了跟踪节点的物理位置,将网络流量与特定用户相关联以及收集有关节点操作系统的详细信息的能力。使用我们的实时生产IPv6网络,我们不仅演示了IID监视的可行性,而且还演示了攻击者可以轻松实现此功能。然后,我们重点介绍了一些可能的恶意应用程序,其中IPv6地址跟踪和分析可以帮助网络犯罪分子。为了防止这种隐私泄露,我们提供了将IPv6地址与其用户解除关联的解决方案。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号