首页> 外文期刊>Network and Service Management, IEEE Transactions on >A Framework for Automated Exploit Prevention from Known Vulnerabilities in Voice over IP Services
【24h】

A Framework for Automated Exploit Prevention from Known Vulnerabilities in Voice over IP Services

机译:一种针对IP语音服务中的已知漏洞的自动漏洞利用防御框架

获取原文
获取原文并翻译 | 示例
           

摘要

We propose a prevention system for SIP-based networks which adopts a rule-based approach to build prevention specifications on SIP protocol activities that stop attacks exploiting an existing vulnerability before reaching their targets. Our approach innovates from existing solutions by making use of the contextual information of a vulnerability targeted by an attack to apply the prevention specification. Manually coding these prevention specifications is tedious and error-prone. Our method automatically infers prevention specifications by analyzing captured SIP exploit traffic. The detection engine uses an efficient method based on event graphs to match protocol activities against available prevention specifications. We describe the different components of our approach and show through an extended performance study of the implemented system its applicability to enterprise level VoIP protection.
机译:我们为基于SIP的网络提出了一种预防系统,该系统采用基于规则的方法来针对SIP协议活动建立预防规范,以在达到目标之前停止利用现有漏洞的攻击。我们的方法通过利用攻击针对的漏洞的上下文信息来应用预防规范,从而从现有解决方案中进行创新。手动编码这些预防规范非常繁琐且容易出错。我们的方法通过分析捕获的SIP漏洞流量自动推断预防规范。检测引擎使用基于事件图的有效方法来将协议活动与可用的预防规范进行匹配。我们描述了我们方法的不同组成部分,并通过对已实施系统的扩展性能研究来表明其对企业级VoIP保护的适用性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号