首页> 外文会议>International Telecommunications Conference >Rearguard: A Novel Blockchain-based Automatic Worm Containment System
【24h】

Rearguard: A Novel Blockchain-based Automatic Worm Containment System

机译:防护装置:一种新型基于区块的自动蠕虫遏制系统

获取原文

摘要

Cyberattacks constitute a significant threat to information technology systems. Computer worms are used to conduct cyberattacks to compromise computers and the data stored on them. The self-propagation characteristic of computer worms allows them to spread fast and infect many hosts in a computer network. Thus, this makes it difficult for humans to deploy a timely countermeasure to confront worm infections within the attacked network. Worm containment is utilized to stop worm spread in a computer network. The containment technique should be automatic, timely, reliable, and implemented in a distributed manner. In this paper, we introduce Rearguard, a novel blockchain-based automatic worm containment system. Rearguard achieves worm containment by creating and distributing vulnerability-based filters for the vulnerabilities being exploited. A vulnerability-based filter is employed to drop any received network message contains variants of a worm that attempts to exploit the same vulnerability. The vulnerability-based filter generation is carried out utilizing a blockchain smart contract deployed in the attacked network. The blockchain ensures reliability, timely response, trustworthy filters, and the availability of all filters in a distributed ledger that is maintained by network hosts. Rearguard has been implemented against a synthetic worm. The obtained results show that Rearguard introduces low overhead as well as ensures timely and automatic response to worm attacks.
机译:Cyber​​Atcks对信息技术系统构成了重大威胁。计算机蠕虫用于进行网络攻击以危及计算机和存储在其上的数据。计算机蠕虫的自传特性允许他们在计算机网络中快速传播并感染许多主机。因此,这使得人类难以及时展开对抗攻击网络内的蠕虫感染。蠕虫遏制用于阻止计算机网络中的蠕虫。容纳技术应以分布式方式自动,及时,可靠,并以分布式方式实现。在本文中,我们介绍了一种新型基于板块的自动蠕虫遏制系统的后卫。后卫通过为漏洞的漏洞创建和分发基于漏洞的漏洞来实现蠕虫遏制。使用基于漏洞的过滤器来删除任何接收的网络消息,该消息包含尝试利用相同漏洞的蠕虫的变体。利用部署在攻击网络中部署的区块链智能合同进行了基于漏洞的过滤器生成。 BlockChain确保可靠性,及时响应,值得信赖的过滤器和由网络主机维护的分布式分类帐中的所有滤波器的可用性。后卫已经针对合成蠕虫实施。所获得的结果表明,后卫引入了低开销,并确保及时和自动响应蠕虫攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号