首页> 外文会议>International Arab Conference on Information Technology >Zero-Day Attack Detection and Prevention in Software-Defined Networks
【24h】

Zero-Day Attack Detection and Prevention in Software-Defined Networks

机译:软件定义网络中的零日攻击检测和预防

获取原文

摘要

The zero-day attack in networks exploits an undiscovered vulnerability, in order to affect/damage networks or programs. The term “zero-day” refers to the number of days available to the software or the hardware vendor to issue a patch for this new vulnerability. Currently, the best-known defense mechanism against the zero-day attacks focuses on detection and response, as a prevention effort, which typically fails against unknown or new vulnerabilities. To the best of our knowledge, this attack has not been widely investigated for Software-Defined Networks (SDNs). Therefore, in this work we are motivated to develop anew zero-day attack detection and prevention mechanism, which is designed and implemented for SDN using a modified sandbox tool, named Cuckoo. Our experiments results, under UNIX system, show that our proposed design successfully stops zero-day malwares by isolating the infected client, and thus, prevents these malwares from infesting other clients.
机译:网络中的零日攻击利用未被发现的漏洞,以影响/损坏网络或程序。术语“零天”是指软件或硬件供应商可用的天数为此新漏洞发出补丁。目前,针对零日攻击的最佳防御机制侧重于检测和响应,作为预防努力,这通常无法针对未知或新漏洞。据我们所知,这种攻击未被广泛调查软件定义的网络(SDNS)。因此,在这项工作中,我们有动力开发重生的零日攻击检测和预防机制,其为使用修改的沙箱工具而设计和实施的SDN,名为Cuckoo。我们的实验结果,在UNIX系统下,我们的建议设计通过隔离受感染的客户来成功地停止零日恶意,因此防止这些恶魔因素感染其他客户。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号