VoIP-aware network attack detection based on statistics and behavior of SIP traffic

被引:6
作者
Lee, Jonghan [1 ]
Cho, Kyumin [2 ]
Lee, ChangYong [3 ]
Kim, Seungjoo [4 ]
机构
[1] Korea Univ, CIST, CJ HelloVis, Seoul 136713, South Korea
[2] Korea Univ, CIST, Informat Secur Grp, KISA, Seoul 136713, South Korea
[3] KISA, Informat Secur Grp, Seoul 138950, South Korea
[4] Korea Univ, CIST, Seoul 136713, South Korea
关键词
VoIP; SIP; VoIPDoS; SPAM; Attack detection; Statistic-based detection; Behavior-based detection;
D O I
10.1007/s12083-014-0289-8
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
VoIP is one of the most popular Internet services. However, VoIP service is vulnerable to several potential security threats. Moreover, existing IP-based security solutions are unable to inspect call setup information. In this paper, we propose a VoIP-aware attack-detection scheme. The proposed scheme is able to detect VoIP network attacks including VoIP DoS and SPAM. It can detect VoIP DoS attacks with low false negatives using a statistics-based detection algorithm and can recognize SPAM with low false positives using a caller behavior-based detection algorithm. We have included experimental results to confirm the proposed scheme.
引用
收藏
页码:872 / 880
页数:9
相关论文
共 5 条
  • [1] Chaisamran N., 2013, INF MEDIA TECHNOL, V8, P528
  • [2] DEVS-Based modeling of VoIP spam callers' behavior for SPIT level calculation
    Kim, Hyung-Jong
    Kim, Myuhng Joo
    Kim, Yoonjeong
    Jeong, Hyun Cheol
    [J]. SIMULATION MODELLING PRACTICE AND THEORY, 2009, 17 (04) : 569 - 584
  • [3] Lamba RK, 2014, INT J RES ADVENT TEC, V2, P178
  • [4] Sadiwala R, 2014, J INNOV TRENDS SCI P, V1, P7
  • [5] Yeon K, 2013, J SECUR ENG, V10, P1