首页> 外文会议>International Scientific-Practical Conference on Problems of Infocommunications Science and Technology >Flow based analysis of Advanced Persistent Threats detecting targeted attacks in cloud computing
【24h】

Flow based analysis of Advanced Persistent Threats detecting targeted attacks in cloud computing

机译:基于流的高级持久威胁分析,可检测云计算中的目标攻击

获取原文

摘要

Cloud computing provides industry, government, and academic users' convenient and cost-effective access to distributed services and shared data via the Internet. Due to its distribution of diverse users and aggregation of immense data, cloud computing has increasingly been the focus of targeted attacks. Meta-analysis of industry studies and retrospective research involving cloud service providers reveal that cloud computing is demonstrably vulnerable to a particular type of targeted attack, Advanced Persistent Threats (APTs). APTs have proven to be difficult to detect and defend against in cloud based infocommunication systems. The prevalent use of polymorphic malware and encrypted covert communication channels make it difficult for existing packet inspecting and signature based security technologies such as; firewalls, intrusion detection sensors, and anti-virus systems to detect APTs. In this paper, we examine the application of an alternative security approach which applies an algorithm derived from flow based monitoring to successfully detect APTs. Results indicate that statistical modeling of APT communications can successfully develop deterministic characteristics for detection is a more effective and efficient way to protect against APTs.
机译:云计算使行业,政府和学术用户可以通过Internet方便且经济高效地访问分布式服务和共享数据。由于其分散的用户分布和海量数据的聚集,云计算已越来越成为目标攻击的焦点。对涉及云服务提供商的行业研究和回顾性研究的荟萃分析表明,云计算显然容易受到特定类型的目标攻击(高级持久威胁(APT))的攻击。实践证明,APT在基于云的信息通信系统中很难检测和防御。多态恶意软件和加密隐蔽通信渠道的普遍使用使现有的数据包检查和基于签名的安全技术(例如:防火墙,入侵检测传感器和防病毒系统来检测APT。在本文中,我们研究了另一种安全方法的应用,该方法应用了基于流的监视派生的算法来成功检测APT。结果表明,APT通信的统计模型可以成功地开发确定性特征以进行检测,这是一种针对APT进行防护的更有效,更有效的方法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号