DNSxP: Enhancing data exfiltration protection through data plane programmability
نویسندگان
چکیده
According to a 2019 Radware report, guarding sensitive data is the highest priority area for investment in cyber security. This no surprise given high number of reported breach incidents annually, and implication these on individuals or organisations targeted. Data exfiltration key stage this form cyber-attack, use Domain Name System protocol popular due essential nature network communication. paper presents DNS Protection (DNSxP) security architecture leveraging Software-Defined Networking Plane Programmability. The solution developed based analysis different malicious cases transmitting over protocol. By performing coarse-grained packet filtering plane, clear benign traffic can be identified quickly, while suspicious passed additional controls at SDN controller classification. As results demonstrate, approach offers combined benefit reducing loss during an attack resource consumption.
منابع مشابه
Browser-Based Covert Data Exfiltration
Current best practices heavily control user permissions on network systems. This effectively mitigates many insider threats regarding the collection and exfiltration of data. Many methods of covert communication involve crafting custom packets, typically requiring both the necessary software and elevated privileges on the system. By exploiting the functionality of a browser, covert channels for...
متن کاملData Exfiltration and Covert Channels
Within an organization, the possibility of a confidential information leak ranks among the highest fears of any executive. Detecting information leaks is a challenging problem, since most organizations depend on a broad and diverse communications network. It is not always straightforward to conclude which information is leaving the organization legitimately, and which communications are malicio...
متن کاملEnhancing Learning from Imbalanced Classes via Data Preprocessing: A Data-Driven Application in Metabolomics Data Mining
This paper presents a data mining application in metabolomics. It aims at building an enhanced machine learning classifier that can be used for diagnosing cachexia syndrome and identifying its involved biomarkers. To achieve this goal, a data-driven analysis is carried out using a public dataset consisting of 1H-NMR metabolite profile. This dataset suffers from the problem of imbalanced classes...
متن کاملThe Frontiers of Data Programmability
Simplifying data programming is a core mission of data management research. The issue at stake is to help engineers build efficient and robust data-centric applications. The frontiers of data programmability extend from longstanding problems, such as the impedance mismatch between programming languages and databases, to more recent challenges of web programmability and large-scale data-intensiv...
متن کاملDynamic Data Linking and Programmability
ful for diagrammatic planning, such as designing harvest and silvicultural blocks, and as a geographic sketchpad for note-taking in the course o f planning activities. The SBWDSS could use this functionality in an ArcView version o f one o f its tools known as the Protection Planning System (PROPS), which is currently implemented using ARC/INFO. This system produces a thematic forest stand map ...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
ژورنال
عنوان ژورنال: Computer Networks
سال: 2021
ISSN: ['1872-7069', '1389-1286']
DOI: https://doi.org/10.1016/j.comnet.2021.108174