https://scholars.lib.ntu.edu.tw/handle/123456789/352027
Title: | Xprobe2++: Low volume remote network information gathering tool | Authors: | F. V. Yarochkin O. Arkin M. Kydyraliev S. Y. Dai Y. Huang SY-YEN KUO |
Keywords: | Network discovery; Network scanning; System fingerprinting | Issue Date: | Jun-2009 | Start page/Pages: | 205-210 | Source: | 39th IEEE/IFIP International Conference on Dependable Systems and Networks (DSN-2009) | Abstract: | Active operating system fingerprinting is the process of actively determining a target network system's underlying operating system type and characteristics by probing the target system network stack with specifically crafted packets and analyzing received response. Identifying the underlying operating system of a network host is an important characteristic that can be used to complement network inventory processes, intrusion detection system discovery mechanisms, security network scanners, vulnerability analysis systems and other security tools that need to evaluate vulnerabilities on remote network systems. During recent years there was a number of publications featuring techniques that aim to confuse or defeat remote network fingerprinting probes. In this paper we present a new version Xprobe2, the network mapping and active operating system fingerprinting tool with improved probing process, which deals with most of the defeating techniques, discussed in recent literature. ©2009 IEEE. |
URI: | http://scholars.lib.ntu.edu.tw/handle/123456789/352027 | DOI: | 10.1109/dsn.2009.5270338 | SDG/Keyword: | Intrusion Detection Systems; Network discovery; Network hosts; Network mapping; Network scanning; Network stack; Network systems; Operating system fingerprinting; Operating systems; Remote networks; Security networks; Security tools; Target systems; Vulnerability analysis; Computer crime; Computer operating systems; Intrusion detection; Scanning; Network security |
Appears in Collections: | 電機工程學系 |
Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.