首页> 外文会议>International Conference on Intelligent Computing and Control Systems >MONOSEK – A Network Packet Processing System for Analysis Detection of TCP Xmas attack using Pattern Analysis
【24h】

MONOSEK – A Network Packet Processing System for Analysis Detection of TCP Xmas attack using Pattern Analysis

机译:MONOSEK –使用模式分析来分析和检测TCP Xmas攻击的网络数据包处理系统

获取原文

摘要

Identification of an open or closed port is done using several port scanning techniques and one of them is TCP Xmas scan. In the TCP header, URG, PSH and FIN flags are utilized for scanning the port. On the targeted system, receiving ports are identified. Distinct packets are directed to the target system. There are several port scanning tools like Snort and Wireshark. In this paper we highlight the advantages of Nmap. Nmap is a network scanning tool which is used for penetration testing and host detection. Specially designed packets are sent to the target host and the reply is analyzed. MONOSEK is used for analyzing the packets. MONOSEK is a Network Session Analysis and Network Packet Processing system. Xmas attack is detected in order to prevent OS fingerprinting and to scan web services.
机译:使用几种端口扫描技术可以识别打开或关闭的端口,其中一项是TCP Xmas扫描。在TCP标头中,URG,PSH和FIN标志用于扫描端口。在目标系统上,将识别接收端口。不同的数据包被定向到目标系统。有几种端口扫描工具,例如Snort和Wireshark。在本文中,我们重点介绍了Nmap的优点。 Nmap是用于渗透测试和主机检测的网络扫描工具。经过特殊设计的数据包将发送到目标主机,并对答复进行分析。 MONOSEK用于分析数据包。 MONOSEK是一个网络会话分析和网络数据包处理系统。检测到Xmas攻击是为了防止OS指纹和扫描Web服务。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号