首页 > 最新文献

Journal of Cyber Security and Mobility最新文献

英文 中文
The Threat of Covert Channels in Network Time Synchronisation Protocols 网络时间同步协议中隐蔽信道的威胁
Q3 Computer Science Pub Date : 2022-03-22 DOI: 10.13052/jcsm2245-1439.1123
Kevin Lamshöft, Jonas Hielscher, Christian Krätzer, J. Dittmann
Synchronized clocks are vital for most communication scenarios in networks of Information Technology (IT) and Operational Technology (OT). The process of time synchronisation requires transmission of high-precision timestamps often originating from external sources. In this paper, we analyze how time synchronization protocols impose a threat by being leveraged as carrier for network covert channels.This paper is an extended version version of our open-access paper [15] in which we performed an in-depth analysis of the Network Time Protocol (NTP) in regards to covert channels. In this extended version, we broaden the view and take a look and time synchronisation in a more general way as we provide two comprehensive threat scenarios regarding covert channels and discuss the applicability of such covert channels to another time synchronisation protocol, namely the Precision Time Protocol, PTP. While the Network Time Protocol (NTP) is the most prevalent protocol for synchronizing clocks in IT networks, the Precision Time Protocol (PTP) is mostly found in networks of Industrial Control Systems (ICS) due to higher demands regarding accuracy and resolution. To illustrate the threat of covert channels in such protocols we describe two threat scenarios, one for the Network Time Protocol and one for the Precision Time Protocol. For NTP we perform a systematic in-depth analysis of covert channels. Our analysis results in the identification of 49 covert channels, by applying a covert channel pattern-based taxonomy. The summary and comparison based on nine selected key attributes show that NTP proofs itself as a plausible carrier for covert channels. The analysis results are evaluated in regards to common behavior of NTP implementations in six major operating systems. Two channels are selected and implemented to be evaluated in network test-beds. By hiding encrypted high entropy data in a high entropy field of NTP we show in our first assessment that practically undetectable channels can be implemented in NTP, motivating the required further research. In our evaluation, we analyze 40,000 NTP server responses from public NTP server providers and discuss potential countermeasures. Finally, we discuss the relevance, applicability and resulting threat of these findings for the Precision Time Protocol.
同步时钟对于信息技术(IT)和操作技术(OT)网络中的大多数通信场景至关重要。时间同步过程需要传输通常源自外部来源的高精度时间戳。在本文中,我们分析了时间同步协议如何通过作为网络隐蔽信道的载体来施加威胁。本文是我们的开放访问论文[15]的扩展版本,在该论文中,我们对与隐蔽信道有关的网络时间协议(NTP)进行了深入分析。在这个扩展版本中,我们拓宽了视野,以更通用的方式看待时间同步,因为我们提供了两种关于隐蔽信道的全面威胁场景,并讨论了这种隐蔽信道对另一种时间同步协议的适用性,即精确时间协议PTP。虽然网络时间协议(NTP)是IT网络中用于同步时钟的最普遍的协议,但由于对准确性和分辨率的更高要求,精确时间协议(PTP)主要出现在工业控制系统(ICS)的网络中。为了说明此类协议中隐蔽通道的威胁,我们描述了两种威胁场景,一种用于网络时间协议,另一种用于精确时间协议。对于NTP,我们对隐蔽通道进行了系统深入的分析。通过应用基于隐蔽通道模式的分类法,我们的分析结果识别了49个隐蔽通道。基于九个选定关键属性的总结和比较表明,NTP证明自己是隐蔽信道的合理载体。分析结果针对六个主要操作系统中NTP实现的常见行为进行了评估。选择并实施了两个通道,以在网络测试台中进行评估。通过将加密的高熵数据隐藏在NTP的高熵字段中,我们在第一次评估中表明,在NTP中可以实现实际无法检测的通道,从而推动了所需的进一步研究。在我们的评估中,我们分析了来自公共NTP服务器提供商的40000个NTP服务器响应,并讨论了潜在的对策。最后,我们讨论了这些发现对精确时间协议的相关性、适用性和由此产生的威胁。
{"title":"The Threat of Covert Channels in Network Time Synchronisation Protocols","authors":"Kevin Lamshöft, Jonas Hielscher, Christian Krätzer, J. Dittmann","doi":"10.13052/jcsm2245-1439.1123","DOIUrl":"https://doi.org/10.13052/jcsm2245-1439.1123","url":null,"abstract":"Synchronized clocks are vital for most communication scenarios in networks of Information Technology (IT) and Operational Technology (OT). The process of time synchronisation requires transmission of high-precision timestamps often originating from external sources. In this paper, we analyze how time synchronization protocols impose a threat by being leveraged as carrier for network covert channels.\u0000This paper is an extended version version of our open-access paper [15] in which we performed an in-depth analysis of the Network Time Protocol (NTP) in regards to covert channels. In this extended version, we broaden the view and take a look and time synchronisation in a more general way as we provide two comprehensive threat scenarios regarding covert channels and discuss the applicability of such covert channels to another time synchronisation protocol, namely the Precision Time Protocol, PTP. While the Network Time Protocol (NTP) is the most prevalent protocol for synchronizing clocks in IT networks, the Precision Time Protocol (PTP) is mostly found in networks of Industrial Control Systems (ICS) due to higher demands regarding accuracy and resolution. To illustrate the threat of covert channels in such protocols we describe two threat scenarios, one for the Network Time Protocol and one for the Precision Time Protocol. For NTP we perform a systematic in-depth analysis of covert channels. Our analysis results in the identification of 49 covert channels, by applying a covert channel pattern-based taxonomy. The summary and comparison based on nine selected key attributes show that NTP proofs itself as a plausible carrier for covert channels. The analysis results are evaluated in regards to common behavior of NTP implementations in six major operating systems. Two channels are selected and implemented to be evaluated in network test-beds. By hiding encrypted high entropy data in a high entropy field of NTP we show in our first assessment that practically undetectable channels can be implemented in NTP, motivating the required further research. In our evaluation, we analyze 40,000 NTP server responses from public NTP server providers and discuss potential countermeasures. Finally, we discuss the relevance, applicability and resulting threat of these findings for the Precision Time Protocol.","PeriodicalId":37820,"journal":{"name":"Journal of Cyber Security and Mobility","volume":" ","pages":""},"PeriodicalIF":0.0,"publicationDate":"2022-03-22","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"42332656","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 1
Research on Known Vulnerability Detection Method Based on Firmware Analysis 基于固件分析的已知漏洞检测方法研究
Q3 Computer Science Pub Date : 2022-01-01 DOI: 10.32604/jcs.2022.026816
Wenjing Wang, Tengteng Zhao, Xiaolong Li, Lei Huang, Wei Zhang, Hui Guo
{"title":"Research on Known Vulnerability Detection Method Based on Firmware Analysis","authors":"Wenjing Wang, Tengteng Zhao, Xiaolong Li, Lei Huang, Wei Zhang, Hui Guo","doi":"10.32604/jcs.2022.026816","DOIUrl":"https://doi.org/10.32604/jcs.2022.026816","url":null,"abstract":"","PeriodicalId":37820,"journal":{"name":"Journal of Cyber Security and Mobility","volume":"1 1","pages":""},"PeriodicalIF":0.0,"publicationDate":"2022-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"90726236","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Research on the Method of Implementing Named Data Network Interconnection Based on IP Network 基于IP网络的命名数据网络互联实现方法研究
Q3 Computer Science Pub Date : 2022-01-01 DOI: 10.32604/jcs.2022.028265
Yabin Xu, Lu Qin, Xiaowei Xu
{"title":"Research on the Method of Implementing Named Data Network Interconnection Based on IP Network","authors":"Yabin Xu, Lu Qin, Xiaowei Xu","doi":"10.32604/jcs.2022.028265","DOIUrl":"https://doi.org/10.32604/jcs.2022.028265","url":null,"abstract":"","PeriodicalId":37820,"journal":{"name":"Journal of Cyber Security and Mobility","volume":"68 1","pages":""},"PeriodicalIF":0.0,"publicationDate":"2022-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"90266454","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Ensuring Information Security in Smart Door Lock Systems Using the Cuckoo Search Algorithm 利用布谷鸟搜索算法确保智能门锁系统的信息安全
Q3 Computer Science Pub Date : 2022-01-01 DOI: 10.32604/jcs.2023.041707
Arkan Kh Shakr Sabonchi, Zainab Hasim Obaid
{"title":"Ensuring Information Security in Smart Door Lock Systems Using the Cuckoo Search Algorithm","authors":"Arkan Kh Shakr Sabonchi, Zainab Hasim Obaid","doi":"10.32604/jcs.2023.041707","DOIUrl":"https://doi.org/10.32604/jcs.2023.041707","url":null,"abstract":"","PeriodicalId":37820,"journal":{"name":"Journal of Cyber Security and Mobility","volume":"41 1","pages":""},"PeriodicalIF":0.0,"publicationDate":"2022-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"85123263","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
An Adaptive BWO Algorithm with RSA for Anomaly Detection in VANETs 基于RSA自适应BWO算法的vanet异常检测
Q3 Computer Science Pub Date : 2022-01-01 DOI: 10.32604/jcs.2022.033436
Y. Sarada Devi, M. Roopa
{"title":"An Adaptive BWO Algorithm with RSA for Anomaly Detection in VANETs","authors":"Y. Sarada Devi, M. Roopa","doi":"10.32604/jcs.2022.033436","DOIUrl":"https://doi.org/10.32604/jcs.2022.033436","url":null,"abstract":"","PeriodicalId":37820,"journal":{"name":"Journal of Cyber Security and Mobility","volume":"34 1","pages":""},"PeriodicalIF":0.0,"publicationDate":"2022-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"88558943","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
A Certificateless Homomorphic Encryption Scheme for Protecting Transaction Data Privacy of Post-Quantum Blockchain 后量子区块链交易数据隐私保护的无证书同态加密方案
Q3 Computer Science Pub Date : 2022-01-01 DOI: 10.32604/jcs.2022.027693
Meng-Wei Zhang, Xiubo Chen, Haseeb Ahmad, Gang Xu, Yixian Yang
{"title":"A Certificateless Homomorphic Encryption Scheme for Protecting Transaction Data Privacy of Post-Quantum Blockchain","authors":"Meng-Wei Zhang, Xiubo Chen, Haseeb Ahmad, Gang Xu, Yixian Yang","doi":"10.32604/jcs.2022.027693","DOIUrl":"https://doi.org/10.32604/jcs.2022.027693","url":null,"abstract":"","PeriodicalId":37820,"journal":{"name":"Journal of Cyber Security and Mobility","volume":"1 1","pages":""},"PeriodicalIF":0.0,"publicationDate":"2022-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"87629805","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
An Efficient Image Cipher Based on 2D Scrambled Image and Random燦umbers 基于二维加扰图像和随机数字的高效图像密码
Q3 Computer Science Pub Date : 2022-01-01 DOI: 10.32604/jcs.2022.034630
Asghar Ali, Sammia Ansar, Ashwag Albakri, Nadeem Iqbal, Shahid Yousaf
{"title":"An Efficient Image Cipher Based on 2D Scrambled Image and Random燦umbers","authors":"Asghar Ali, Sammia Ansar, Ashwag Albakri, Nadeem Iqbal, Shahid Yousaf","doi":"10.32604/jcs.2022.034630","DOIUrl":"https://doi.org/10.32604/jcs.2022.034630","url":null,"abstract":"","PeriodicalId":37820,"journal":{"name":"Journal of Cyber Security and Mobility","volume":"6 1","pages":""},"PeriodicalIF":0.0,"publicationDate":"2022-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"79538984","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Adaptive Polling Rate for SNMP for Detecting Elusive DDOS SNMP检测难以捉摸DDOS的自适应轮询速率
Q3 Computer Science Pub Date : 2022-01-01 DOI: 10.32604/jcs.2022.027524
Yichiet Aun, Yen-Min Jasmina Khaw, Ming-Lee Gan, V. Ponnusamy
{"title":"Adaptive Polling Rate for SNMP for Detecting Elusive DDOS","authors":"Yichiet Aun, Yen-Min Jasmina Khaw, Ming-Lee Gan, V. Ponnusamy","doi":"10.32604/jcs.2022.027524","DOIUrl":"https://doi.org/10.32604/jcs.2022.027524","url":null,"abstract":"","PeriodicalId":37820,"journal":{"name":"Journal of Cyber Security and Mobility","volume":"8 1","pages":""},"PeriodicalIF":0.0,"publicationDate":"2022-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"82001582","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Application and Challenge of Blockchain Technology in Medical Field 区块链技术在医疗领域的应用与挑战
Q3 Computer Science Pub Date : 2022-01-01 DOI: 10.32604/jcs.2022.029451
Kai-bo Zhang, Zhao Qiu, GengQuan Xie, Jia-Xian Lin, Tingting Zhang, Yingsheng Lian, Tao Chen, Yunlong He, Yu Yang
{"title":"Application and Challenge of Blockchain Technology in Medical Field","authors":"Kai-bo Zhang, Zhao Qiu, GengQuan Xie, Jia-Xian Lin, Tingting Zhang, Yingsheng Lian, Tao Chen, Yunlong He, Yu Yang","doi":"10.32604/jcs.2022.029451","DOIUrl":"https://doi.org/10.32604/jcs.2022.029451","url":null,"abstract":"","PeriodicalId":37820,"journal":{"name":"Journal of Cyber Security and Mobility","volume":"15 1","pages":""},"PeriodicalIF":0.0,"publicationDate":"2022-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"83450903","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Cybersecurity Plan for a Healthcare Cloud-Based Solutions 医疗保健云解决方案的网络安全计划
Q3 Computer Science Pub Date : 2022-01-01 DOI: 10.32604/jcs.2022.035446
A. S. Yusuf, A. Q. Ayinde
{"title":"Cybersecurity Plan for a Healthcare Cloud-Based Solutions","authors":"A. S. Yusuf, A. Q. Ayinde","doi":"10.32604/jcs.2022.035446","DOIUrl":"https://doi.org/10.32604/jcs.2022.035446","url":null,"abstract":"","PeriodicalId":37820,"journal":{"name":"Journal of Cyber Security and Mobility","volume":"50 1","pages":""},"PeriodicalIF":0.0,"publicationDate":"2022-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"74023396","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
期刊
Journal of Cyber Security and Mobility
全部 Acc. Chem. Res. ACS Applied Bio Materials ACS Appl. Electron. Mater. ACS Appl. Energy Mater. ACS Appl. Mater. Interfaces ACS Appl. Nano Mater. ACS Appl. Polym. Mater. ACS BIOMATER-SCI ENG ACS Catal. ACS Cent. Sci. ACS Chem. Biol. ACS Chemical Health & Safety ACS Chem. Neurosci. ACS Comb. Sci. ACS Earth Space Chem. ACS Energy Lett. ACS Infect. Dis. ACS Macro Lett. ACS Mater. Lett. ACS Med. Chem. Lett. ACS Nano ACS Omega ACS Photonics ACS Sens. ACS Sustainable Chem. Eng. ACS Synth. Biol. Anal. Chem. BIOCHEMISTRY-US Bioconjugate Chem. BIOMACROMOLECULES Chem. Res. Toxicol. Chem. Rev. Chem. Mater. CRYST GROWTH DES ENERG FUEL Environ. Sci. Technol. Environ. Sci. Technol. Lett. Eur. J. Inorg. Chem. IND ENG CHEM RES Inorg. Chem. J. Agric. Food. Chem. J. Chem. Eng. Data J. Chem. Educ. J. Chem. Inf. Model. J. Chem. Theory Comput. J. Med. Chem. J. Nat. Prod. J PROTEOME RES J. Am. Chem. Soc. LANGMUIR MACROMOLECULES Mol. Pharmaceutics Nano Lett. Org. Lett. ORG PROCESS RES DEV ORGANOMETALLICS J. Org. Chem. J. Phys. Chem. J. Phys. Chem. A J. Phys. Chem. B J. Phys. Chem. C J. Phys. Chem. Lett. Analyst Anal. Methods Biomater. Sci. Catal. Sci. Technol. Chem. Commun. Chem. Soc. Rev. CHEM EDUC RES PRACT CRYSTENGCOMM Dalton Trans. Energy Environ. Sci. ENVIRON SCI-NANO ENVIRON SCI-PROC IMP ENVIRON SCI-WAT RES Faraday Discuss. Food Funct. Green Chem. Inorg. Chem. Front. Integr. Biol. J. Anal. At. Spectrom. J. Mater. Chem. A J. Mater. Chem. B J. Mater. Chem. C Lab Chip Mater. Chem. Front. Mater. Horiz. MEDCHEMCOMM Metallomics Mol. Biosyst. Mol. Syst. Des. Eng. Nanoscale Nanoscale Horiz. Nat. Prod. Rep. New J. Chem. Org. Biomol. Chem. Org. Chem. Front. PHOTOCH PHOTOBIO SCI PCCP Polym. Chem.
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1