课题基金 / 基金详情

CAREER:Towards Effective Identification of Application Behaviors in Encrypted Traffic

CAREER:Towards Effective Identification of Application Behaviors in Encrypted Traffic
职业:有效识别加密流量中的应用程序行为
批准号:
0852649
负责人:
Fabian Monrose
金额:
$24.12万
依托单位国家:
美国
项目类别:
Continuing Grant
财政年份:
2008
资助国家:
美国
项目状态:
已结题
起止时间:
2008-08-19 至 2012-08-31

项目摘要

项目成果

Fabian Monrose的其他基金

相似基金

相关文献

中文摘要
翻译
点击翻译按钮获取中文摘要
英文摘要
Fabian MonroseJohn Hopkins Unversity0546350AbstractSeveral fundamental security mechanisms for restricting access tonetwork resources rely on the ability of a reference monitor toinspect the contents of traffic as it traverses the network. However,with the increasing popularity of cryptographic protocols thetraditional means of inspecting packet contents to enforce securitypolicies is no longer a viable approach as message contents areconcealed by encryption. This project encompasses the first majorcomponent of a principled investigation into the feasibility ofprotocol identification based solely on those features that remainintact after encryption---namely, the packet size, inter-arrival anddirection. More specifically, this work attempts to provide a betterunderstanding of the limits of protocol recognition based on athorough statistical analysis and information theoretic assessment ofthe available features in protocol behaviors observed in thewild. Specifically, this project advances the current state of the artand contributes to the scientific community by building efficientmixture models for detecting protocols with multi-modal behaviors,designing practical tools for visualizing behavioral motifs in TCPsequences, providing new information-theoretic decision policies forassigning protocol class labels to these sequences, and imparting newnotions for assessing realistic masquerading attacks and theappropriate defenses.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Student Travel to the 2016 USENIX Security Symposium
NSF Support for the 2015 USENIX Security Symposium, Financial Aid; August 2015; Washington, D.C.
TWC: TTP Option: Small: Collaborative: Scalable Techniques for Better Situational Awareness: Algorithmic Frameworks and Large-Scale Empirical Analyses
NSF Support for the 2013 USENIX Security Symposium, Financial Aid; August 2013; Washington DC
海外基金