Concolic Execution of NMap Scripts for Honeyfarm Generation
Concolic Execution of NMap Scripts for Honeyfarm Generation
复制标题
用于 Honeyfarm 生成的 NMap 脚本的 Concolic 执行
DOI:
10.1145/3474370.3485660
复制
发表时间:
2021
期刊:
影响因子:
--
通讯作者:
Xie, Fei
中科院分区:
文献类型:
--
作者:
Li, Zhe;Chen, Bo;Feng, Wu-chang;Xie, Fei
Attackers rely upon a vast array of tools for automating attacksagainst vulnerable servers and services. It is often the case thatwhen vulnerabilities are disclosed, scripts for detecting and exploit-ing them in tools such asNmapandMetasploitare released soonafter, leading to the immediate identification and compromise ofvulnerable systems. Honeypots, honeynets, tarpits, and other decep-tive techniques can be used to slow attackers down, however, such approaches have difficulty keeping up with the sheer number of vulnerabilities being discovered and attacking scripts that are being released. To address this issue, this paper describes an approach for applying concolic execution on attacking scripts in Nmap in order to automatically generate lightweight fake versions of the vulnerable services that can fool the scripts. By doing so in an automated and scalable manner, the approach can enable rapid deployment of custom honeyfarms that leverage the results of concolic execution to trick an attacker's script into returning a result chosen by the honeyfarm, making the script unreliable for the use by the attacker.
登录
查看更多内容
DOI:
--
发表时间:
2014
期刊:
International Conference on Architectural Support for Programming Languages and Operating Systems
影响因子:
--
作者:
Stefan Bucur;Johannes Kinder;George Candea
通讯作者:
George Candea
DOI:
--
发表时间:
2009
期刊:
International Conference on Hybrid Information Technology
影响因子:
--
作者:
Pei;Chung;Tae
通讯作者:
Tae
影响因子:
22.7
作者:
R. Ierusalimschy;L. Figueiredo;Waldemar Celes Filho
通讯作者:
Waldemar Celes Filho
DOI:
10.1002/9781119552963.ch3
发表时间:
2019
期刊:
Cybersecurity Blue Team Toolkit
影响因子:
--
作者:
C. Deccio
通讯作者:
C. Deccio