首页> 外文期刊>Journal of the National Institute of Information and Communications Technology >DAEDALUS: Practical Alert System Based on Large-scale Darknet Monitoring for Protecting Live Networks
【24h】

DAEDALUS: Practical Alert System Based on Large-scale Darknet Monitoring for Protecting Live Networks

机译:DAEDALUS:基于大规模暗网监控的实用警报系统,用于保护实时网络

获取原文
获取原文并翻译 | 示例
       

摘要

A darknet is a set of globally announced unused IP addresses and using it is a good way to monitor network attacks such as malware's scans. However, large-scale darknet monitoring systems had two problems: 1) the systems have less direct contribution to protect the live networks; 2) the systems provide less incentive to organizations that will deploy a sensor on their darknet. In this paper, we describe a novel darknet monitoring architecture to solve the above two problems. Based on the architecture, we designed, implemented, and conducted trial operations of an alert system named DAEDALUS. The DAEDALUS enables us to detect malicious hosts in an internal network of an organization, and to send alerts to an operator of the organization. After the trial operations, we have confirmed that the DAEDALUS is effective to detect malicious hosts and misconfigured hosts in the internal networks.
机译:暗网是一组在全球范围内宣布未使用的IP地址,使用它是监视网络攻击(如恶意软件扫描)的好方法。但是,大规模的暗网监控系统存在两个问题:1)这些系统对保护实时网络的直接贡献较小; 2)该系统对将在其暗网上部署传感器的组织的激励较小。在本文中,我们描述了一种新颖的暗网监控架构,可以解决上述两个问题。基于该体系结构,我们设计,实施并进行了名为DAEDALUS的警报系统的试运行。 DAEDALUS使我们能够检测组织内部网络中的恶意主机,并将警报发送给组织操作员。经过试用操作,我们已经确认DAEDALUS可有效检测内部网络中的恶意主机和配置错误的主机。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号