liu.seSearch for publications in DiVA
Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • oxford
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
Watch your step! Detecting stepping stones in programmable networks
Swiss Fed Inst Technol, Switzerland; Aalto Univ, Finland.
Linköping University, Department of Computer and Information Science, Database and information techniques. Linköping University, Faculty of Science & Engineering.ORCID iD: 0000-0002-9829-9287
Aalto Univ, Finland.
2019 (English)In: ICC 2019 - 2019 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), IEEE , 2019Conference paper, Published paper (Refereed)
Abstract [en]

Hackers hide behind compromised intermediate hosts and pose advanced persistent threats (APTs). The compromised hosts are used as stepping stones to launch real attacks, as is evident from an incident that shook the world in 2016 - Panama Papers Leak. The major attack would not go unnoticed if the compromised stepping stone, in this case an email server, could be identified in time. In this paper, we explore how todays programmable networks could be retrofitted with effective stepping stone detection mechanisms to correlate flows. We share initial results to prove that such a setup exists. Lastly, we analyze scalability issues associated with the setup and explore recent developments in network monitoring which have potential to address these issues.

Place, publisher, year, edition, pages
IEEE , 2019.
Series
IEEE International Conference on Communications, ISSN 1550-3607, E-ISSN 1938-1883
Keywords [en]
Advanced persistent threat; Stepping stone attack; Network monitoring; Intrusion detection; Programmable network; Software-defined network
National Category
Communication Systems
Identifiers
URN: urn:nbn:se:liu:diva-161870DOI: 10.1109/ICC.2019.8761731ISI: 000492038804042ISBN: 978-1-5386-8088-9 (electronic)ISBN: 978-1-5386-8089-6 (print)OAI: oai:DiVA.org:liu-161870DiVA, id: diva2:1369330
Conference
IEEE International Conference on Communications (ICC)
Note

Funding Agencies|Center for Industrial Information Technology (CENIIT) [17:01]

Available from: 2019-11-11 Created: 2019-11-11 Last updated: 2019-11-11

Open Access in DiVA

No full text in DiVA

Other links

Publisher's full text

Search in DiVA

By author/editor
Gurtov, Andrei
By organisation
Database and information techniquesFaculty of Science & Engineering
Communication Systems

Search outside of DiVA

GoogleGoogle Scholar

doi
isbn
urn-nbn

Altmetric score

doi
isbn
urn-nbn
Total: 92 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • oxford
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf