Presentation 2006-07-21
Macro and Micro Analysis on Vulnerability Scanning Activities via Distributed Observation over the Internet
Naoya FUKUNO, Tomohiro KOBORI, Hiroaki KIKUCHI, Masato TERADA, Norihisa DOI,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) Computer virus and worms perform randomly spyware and port-scanning to find a vulnerability in the Internet. The fraction of malicious behaviors varies, e.g, some host performs scan contentionally and some host scans uniformly over the IP address blocks. In this paper, First, we analysis a set of source addresses observed by distributed sensors in ISDAS from a "macro" view point. Second, we examine behaviors of from "micro" perspective. Finally, we study a new mathematical model for malicious hosts based on these analysis.
Keyword(in Japanese) (See Japanese page)
Keyword(in English)
Paper # ISEC2006-49
Date of Issue

Conference Information
Committee ISEC
Conference Date 2006/7/14(1days)
Place (in Japanese) (See Japanese page)
Place (in English)
Topics (in Japanese) (See Japanese page)
Topics (in English)
Chair
Vice Chair
Secretary
Assistant

Paper Information
Registration To Information Security (ISEC)
Language JPN
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) Macro and Micro Analysis on Vulnerability Scanning Activities via Distributed Observation over the Internet
Sub Title (in English)
Keyword(1)
1st Author's Name Naoya FUKUNO
1st Author's Affiliation Couse of Information Engineering, Graduate School of Engineering Tokai University()
2nd Author's Name Tomohiro KOBORI
2nd Author's Affiliation Couse of Information Engineering, Graduate School of Engineering Tokai University
3rd Author's Name Hiroaki KIKUCHI
3rd Author's Affiliation Couse of Information Engineering, Graduate School of Engineering Tokai University
4th Author's Name Masato TERADA
4th Author's Affiliation Hitachi, Ltd. Hitachi Incident Response Team (HIRT)
5th Author's Name Norihisa DOI
5th Author's Affiliation Dept. of Info. and System Engineering, Faculity of Scienece and Engineering, Chuo University
Date 2006-07-21
Paper # ISEC2006-49
Volume (vol) vol.106
Number (no) 176
Page pp.pp.-
#Pages 6
Date of Issue