-
Sixth International Conference on Networking, Architecture, and Storage, NAS 2011, Dalian, China, 28-30 July, 2011; 01/2011
-
12th International Conference on Parallel and Distributed Computing, Applications and Technologies, PDCAT 2011, Gwangju, Korea, October 20-22, 2011; 01/2011
-
Proceedings of the 2011 ACM Symposium on Applied Computing (SAC), TaiChung, Taiwan, March 21 - 24, 2011; 01/2011
-
12th International Conference on Parallel and Distributed Computing, Applications and Technologies, PDCAT 2011, Gwangju, Korea, October 20-22, 2011; 01/2011
-
Applied Cryptography and Network Security - 9th International Conference, ACNS 2011, Nerja, Spain, June 7-10, 2011. Proceedings; 01/2011
-
[show abstract]
[hide abstract]
ABSTRACT: Unknown protocol inference are useful for many security application, including intrusion detection which always depends on deep packet inspection. However, mining distinguishers with unknown protocol format generally turns to protocol reverse engineering. In this paper, we propose a novel method for automatically abstracting protocol distinguishers based on statistic and our method is proved to be a good tool in finding protocol specifications. To implement and validate our method, we deign a serial of experiments. Then, applied to analyze of the indicators - recall is 99% while precise equals 99.9%, the method was proved highly efficient in the real-world environment.
Intelligent Computing and Integrated Systems (ICISS), 2010 International Conference on; 11/2010
-
Recent Advances in Intrusion Detection, 13th International Symposium, RAID 2010, Ottawa, Ontario, Canada, September 15-17, 2010. Proceedings; 01/2010