通信学报2018,Vol.39Issue(2):73-87,15.DOI:10.11959/j.issn.1000-436x.2018025
基于POF的网络窃听攻击移动目标防御方法
Moving target defense against network eavesdropping attack using POF
摘要
Abstract
Eavesdropping attack hereby was the major attack for traditional network communication. As this kind of at-tacks was stealthy and untraceable, it was barely detectable for those feature detection or static configuration based pas-sive defense approaches. Since existing encryption or dynamic address methods could only confuse part of fields of net-work protocols, they couldn't form a comprehensive protection. Therefore a moving target defense method by utilizing the protocol customization ability of protocol-oblivious forwarding (POF) was proposed, through private protocol packet randomization strategy and randomly drop deception-packets on dynamic paths strategy. It could greatly increase the dif-ficulty of implementing network eavesdropping attack and protect the privacy of the network communication process. Experiments and compare studies show its efficiency.关键词
移动目标防御/窃听攻击/协议栈随机化/网络空间欺骗/协议无感知转发Key words
moving target defense/eavesdropping attack/protocol randomization/cyber space deception/proto-col-oblivious forwarding分类
信息技术与安全科学引用本文复制引用
马多贺,李琼,林东岱..基于POF的网络窃听攻击移动目标防御方法[J].通信学报,2018,39(2):73-87,15.基金项目
国家重点研发计划课题基金资助项目(No.2017YFB1010000) (No.2017YFB1010000)
国家高技术研究发展计划("863"计划)基金资助项目(No.2015AA016106) ("863"计划)
中国科学院信息工程研究所"青年之星"计划基金资助项目(No.Y7Z0201105) (No.Y7Z0201105)
国家自然科学基金资助项目(No.61471141) (No.61471141)
深圳市技术攻关基金资助项目(No.JSGG20160427185010977)Foundation Items: The National Key Research and Development Program of China (No.2017YFB1010000), The National High Technology Research and Development Program of China (863 Program) (No.2015AA016106), “Young Scientist Program” of Insti-tute of Information Engineering CAS (No.Y7Z0201105), The National Natural Science Foundation of China (No.61471141), The Key Technology Program of Shenzhen (No.JSGG20160427185010977) (No.JSGG20160427185010977)