首页> 外文会议>IEEE Workshop on Local and Metropolitan Area Networks >A Framework for Detecting Malformed Messages in SIP Networks
【24h】

A Framework for Detecting Malformed Messages in SIP Networks

机译:用于检测SIP网络中畸形消息的框架

获取原文

摘要

Internet telephony like any other Internet service suffers from security flaws caused by various implementation errors (e. g. in end-users terminals, protocols, operating systems, hardware, etc). These implementation problems usually lead VoIP subsystems (e. g. SIP servers) to various unstable operations whenever trying to process a message not conforming to the underlying standards. As Internet telephony becomes more and more popular, attackers will attempt to exhaustively “test” implementations’ robustness, transmitting various types of malformed messages to them. Since it is almost infeasible to avoid or predict every potential error caused during the developing process of these subsystems, it is necessary to specify an appropriate and robust, from the security point of view, framework that will facilitate the successful detection and handling of any kind of malformed messages aiming to destruct the provided service. In this paper, we adequately present malformed message attacks against SIP network servers and/or SIP end-user terminals and we propose a new detection “framework” of prototyped attacks’ signatures that can assist the detection procedure and provide effective defence against this category of attacks.
机译:与其他任何其他互联网服务类似的互联网电话遭受了各种实现错误引起的安全缺陷(例如,在最终用户终端,协议,操作系统,硬件等中)。这些实施问题通常引导VoIP子系统(例如SIP服务器)到各种不稳定的操作,每当尝试处理不符合底层标准的消息时。随着互联网电话变得越来越受欢迎,攻击者将尝试彻底地“测试”实现“稳健性”,将各种类型的格式信息传输给它们。由于避免或预测这些子系统的开发过程中引起的每个潜在错误几乎是不可行的,因此必须从安全的角度来看,从安全的角度来看,有助于促进任何类型的成功检测和处理的框架旨在破坏提供的服务的畸形消息。在本文中,我们充分存在针对SIP网络服务器和/或SIP最终用户终端的格式错误的消息攻击,我们提出了一种新的检测“框架”的原型攻击的签名,可以帮助检测程序并为此类别提供有效的防御攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号