| Title | Date Added | Company | |
|---|---|---|---|
![]() |
An Efficient Filter for Denial-of-Service Bandwidth Attacks | 2008-01-01 | University of Melbourne |
| This paper presents an efficient method for detecting and filtering denial-of-service bandwidth attacks. The system called TOPS (Tabulated Online Packet Statistics) can monitor a large number of network addresses in a compact, fixed-size structure using several effective heuristics. The paper demonstrates that TOPS can detect bandwidth attacks in a standard benchmark dataset with a high accuracy and a low false alarm rate. A key benefit of TOPS is that it uses few computational resources and does not slow down during an attack.
Tags: Intrusion - Tampering, Intrusion - Tampering |
|||
![]() |
Protection for the Cisco Catalyst 6500 Series Switches Against Denial-of-Service Attacks | 2007-12-24 | Cisco Systems |
| Denial-of-Service (DoS) attacks continue to be a serious threat to enterprise and service provider networks. They can disrupt mission-critical services, prevent data transfer between devices, and decrease overall productivity. The Cisco Catalyst 6500 Series Supervisor Engine 32 and Supervisor Engine 720 include hardware-based mechanisms that can effectively protect against DoS attacks on the Cisco Catalyst 6500 Series switches.
Tags: Intrusion - Tampering |
|||
![]() |
How Cisco IT Protects Against Distributed Denial of Service Attacks | 2007-12-17 | Cisco Systems |
| Cisco IT uses a variety of techniques to protect the Cisco network from DDoS attacks. When the attacks originate from a broad range of spoofed addresses and target mission-critical servers, Cisco often uses Cisco Guard, which provides an added layer of protection. This case study describes Cisco IT's internal use of Cisco Guard within the Cisco global network, a leading-edge enterprise environment that is one of the largest and most complex in the world. Cisco customers can draw on Cisco IT's real-world experience in this area to help support similar enterprise needs.
Tags: Intrusion - Tampering |
|||
![]() |
The Early Detection of DDoS Based on the Persistent Increment Feature of the Traffic Volume | 2007-12-03 | Polytechnic University |
| One of the major threats to cyber security is Distributed Denial of Service (DDoS) attacks. This paper proposes a new algorithm based on the persistent increment tendency of DDoS traffic. The scheme can detect a DDoS attack in its early stages when the attacking packet's attribute value has no distinct features. It can differentiate DDoS from flash crowd traffic. This scheme detects DDoS attacks with on-line and distributed characteristics. Simulation shows the algorithm's validity and accuracy. | |||
![]() |
Botnets: The New Threat Landscape | 2007-12-01 | Cisco Systems |
| A botnet is an army of compromised machines, also known as "Zombies," that are under the command and control of a single "Botmaster." The rise of consumer broadband has greatly increased the power of botnets to launch crippling Denial of Service (DoS) attacks on servers, infect millions of computers with spyware and other malicious code, steal identity data, send out vast quantities of spam, and engage in click fraud, blackmail, and extortion. Botnets are the primary security threat on the Internet today. It is easy to commission botnet attack services and hackers are quicker than ever to exploit new vulnerabilities. This white paper discusses the typical lifecycle of a botnet, the damage caused by botnet attacks, and the most effective detection and mitigation techniques.
Tags: Intrusion - Tampering |
|||
![]() |
Denial of Service Attacks and the Emergence of Intrusion Prevention Systems | 2007-11-13 | tylerAreber.com |
| In an age of political unrest and war, the internet is being used as a source of constant communication and even attack. Since 2000, Denial of Service (DoS) and Distributed Denial of Service (DDoS) attacks have been prevalent across the internet. These attacks which can be launched from pretty much anywhere, against anyone, have cost private companies and other organizations millions of dollars resulting from downtime. The purpose of this paper is to give an in depth look at what exactly denial of service attacks are, what forms they come in and how they can be stopped. The contents of this paper are based off of the Sans Reading Room white paper Denial of Service attacks and the emergence of Intrusion Prevention Systems.
Tags: Intrusion - Tampering, Intrusion - Tampering |
|||
![]() |
Denial of Service or Denial of Security?: How Attacks on Reliability Can Compromise Anonymity | 2007-11-02 | Association for Computing Machinery |
| This paper considers the effect attackers who disrupt anonymous communications have on the security of traditional high- and low-latency anonymous communication systems, as well as on the Hydra-Onion and Cashmere systems that aim to offer reliable mixing, and Salsa, a peer-to-peer anonymous communication network. The paper shows that Denial of Service (DoS) lowers anonymity as messages need to get retransmitted to be delivered, presenting more opportunities for attack. The paper uncovers a fundamental limit on the security of mix networks, showing that they cannot tolerate a majority of nodes being malicious. Cashmere, Hydra-Onion, and Salsa security is also badly affected by DoS attackers. The results are backed by probabilistic modeling and extensive simulations and are of direct applicability to deployed anonymity systems.
Tags: Security Administration, Intrusion - Tampering |
|||
![]() |
A Silent SMS Denial of Service (DoS) Attack | 2007-10-31 | University of Pretoria |
| Global System for Mobile communications (GSM) is a popular mobile communications network. Short Message Service (SMS) is an easily adopted person-to-person communications technology for mobile devices. The GSM architecture allows for the insertion of mass application-generated SMS messages directly into the network infrastructure. In contrast, a mass continuous send of "Silent" SMS messages constitutes an invisible Denial of Service (DoS) attack on a mobile handset. Such a mobile handset DoS attack may be conducted for economic advantage to elude another party from communicating. This paper describes, from a technical perspective, how a silent application-generated denial of service (DoS) SMS attack is conducted.
Tags: Mobile and Wireless, Mobile and Wireless |
|||
![]() |
Improved Detection System of Denial of Service Attack | 2007-10-17 | Institute of Electrical and Electronics Engineers |
| A problem with current intrusion detection systems is that they have many false positive and false negative events. Most of the existing Intrusion detection systems implemented nowadays depend on rule-based expert systems where new attacks are not detectable. In this paper, a possible application of Neural Networks is presented as a component of an intrusion detection system.
Tags: Intrusion - Tampering, Intrusion - Tampering |
|||
![]() |
Top AJAX Security Dangers | 2007-10-01 | Hewlett-Packard (HP) |
| Are you ready for AJAX? Hackers definitely are! With the growth of Web 2.0 and Rich Internet Applications (RIA), developers are rapidly adopting AJAX and unknowingly exposing serious security risks. While AJAX can greatly improve usability, it can also generate new attack opportunities. Download this white paper from HP and learn how to protect your sensitive data.
Tags: Software Development Tools, Software Development Tools, Intrusion - Tampering, Software Development Tools |
Overwhelmed by consolidation? Take it in steps.
Learn the 5 steps to data center consolidation - download the whitepaper now.
Choose a career with Accenture in Singapore
A dynamic job opportunity where technology and business intersect
Choose a career with Accenture in Malaysia
A dynamic job opportunity where technology and business intersect
NetIQ DRA live demonstration:
Learn how to improve your efficiency when administering Active Directory
The Roots for a Greener World
Discover Hitachi's Environmental Vision 2025 and featured Eco-Products
The Desktop Virtualization Revolution is here!
Find our more with Citrix Simplicity is Power
Lack of visibility into network issues and performance?
Find out today. Download SolarWinds FREE 30-Day Trial Software here.
IT Salary & Skills Report 2009
Join activeTechPros for free access to the report