首页> 外文会议>International symposium on research in attacks, intrusions and defenses >SDN Rootkits: Subverting Network Operating Systems of Software-Defined Networks
【24h】

SDN Rootkits: Subverting Network Operating Systems of Software-Defined Networks

机译:SDN Rootkits:颠覆软件定义网络的网络操作系统

获取原文

摘要

The new paradigm of Software-Defined Networking (SDN) enables exciting new functionality for building networks. Its core component is the so called SDN controller (also termed network operating system). An SDN controller is logically centralized and crucially important, thus, exploiting it can significantly harm SDN-based networks. As recent work considers only flaws and rudimentary malicious logic inside SDN applications, we focus on rootkit techniques which enable attackers to subvert network operating systems. We present two prototype implementations: a SDN rootkit for the industry's leading open source controller OpenDaylight as well as a version with basic rootkit functions for the commercial and non-OpenDaylight-based HP controller. Our SDN rootkit is capable of actively hiding itself and malicious network programming as well as providing remote access. Since OpenDaylight intends to establish a reference framework for network operating systems (both open source and commercial), our work demonstrates potential threats for a wide range of network operating systems.
机译:软件定义网络(SDN)的新范例为构建网络提供了令人兴奋的新功能。它的核心组件是所谓的SDN控制器(也称为网络操作系统)。 SDN控制器在逻辑上是集中的并且至关重要,因此,对其进行利用会严重损害基于SDN的网络。由于最近的工作仅考虑SDN应用程序中的缺陷和基本的恶意逻辑,因此我们将重点放在rootkit技术上,该技术使攻击者能够破坏网络操作系统。我们提供了两种原型实现:用于业界领先的开源控制器OpenDaylight的SDN rootkit,以及用于商业和非基于OpenDaylight的HP控制器的具有基本rootkit功能的版本。我们的SDN rootkit能够主动隐藏自身和恶意网络编程,并提供远程访问。由于OpenDaylight打算为网络操作系统(开放源代码和商业版本)建立参考框架,因此我们的工作证明了对各种网络操作系统的潜在威胁。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号