首页> 外文期刊>Computer networks >DNSxP: Enhancing data exfiltration protection through data plane programmability
【24h】

DNSxP: Enhancing data exfiltration protection through data plane programmability

机译:DNSXP:通过数据平面可编程性增强数据exfiltration保护

获取原文
获取原文并翻译 | 示例
           

摘要

According to a 2019 Radware report, guarding sensitive data is the highest priority area for investment in cyber security. This is no surprise given the high number of reported data breach incidents annually, and the implication of these on the individuals or organisations targeted. Data exfiltration is a key stage in this form of cyber-attack, and the use of the Domain Name System protocol for data exfiltration is popular due to the essential nature of the protocol for network communication. This paper presents a DNS data exfiltration Protection (DNSxP) security architecture leveraging Software-Defined Networking and Data Plane Programmability. The solution is developed based on analysis of different malicious use cases for transmitting data over the DNS protocol. By performing coarse-grained packet filtering and analysis in the data plane, clear benign or malicious traffic can be identified quickly, while suspicious traffic is passed to additional security controls at the SDN controller for classification. As the results demonstrate, this approach offers the combined benefit of reducing data loss during an exfiltration attack and reducing network resource consumption.
机译:根据2019年的Radware报告,保护敏感数据是网络安全投资的最高优先级区域。鉴于每年报告的数据泄露事件的大量报告的数据违规事件,这并不令人意外,并对这些目标或组织的含义含义。数据exfiltration是这种网络攻击形式的关键阶段,并且由于网络通信协议的基本性质,使用域名系统协议的数据exfiltration的使用是流行的。本文介绍了DNS数据exfiltration保护(DNSXP)安全架构利用软件定义的网络和数据平面可编程性。该解决方案是基于对不同恶意用例的分析来开发,用于通过DNS协议传输数据。通过在数据平面执行粗粒小的数据包过滤和分析,可以快速识别清除良性或恶意流量,而可疑流量被传递到SDN控制器的额外安全控制以进行分类。结果表明,该方法提供了在exfiltration攻击期间降低数据丢失并降低网络资源消耗的组合益处。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号