SIEGE : Service-Independent Enterprise-GradE protection against password scans

dc.contributor.authorWaldvogel, Marcel
dc.contributor.authorKollek, Jürgen
dc.date.accessioned2014-02-03T09:16:10Zdeu
dc.date.available2014-02-03T09:16:10Zdeu
dc.date.issued2014deu
dc.description.abstractSecurity is one of the main challenges today, complicated significantly by the heterogeneous and open academic networks with thousands of different applications. Botnet-based brute-force password scans are common security threat against the open academic networks. Common defenses are hard to maintain, error-prone and do not reliably discriminate between user error and coordinated attack. In this paper, we present a novel approach, which allows to secure many network services at once. By combining in-app tracking, local and global crowdsourcing, geographic information, and probabilistic user-bot distinction through differential password analysis, our PAM-based detection module can provide higher accuracy and faster blocking of botnets. In the future, we aim to make the mechanism even more generic and thus provide a distributed defense against one of the strongest threats against our infrastructure.eng
dc.description.versionpublished
dc.identifier.ppn40036204Xdeu
dc.identifier.urihttp://kops.uni-konstanz.de/handle/123456789/26113
dc.language.isoengdeu
dc.legacy.dateIssued2014-02-03deu
dc.rightsterms-of-usedeu
dc.rights.urihttps://rightsstatements.org/page/InC/1.0/deu
dc.subjectPassword scandeu
dc.subject.ddc004deu
dc.subject.gndSicherheitdeu
dc.titleSIEGE : Service-Independent Enterprise-GradE protection against password scanseng
dc.typeWORKINGPAPERdeu
dspace.entity.typePublication
kops.citation.bibtex
@techreport{Waldvogel2014SIEGE-26113,
  year={2014},
  title={SIEGE : Service-Independent Enterprise-GradE protection against password scans},
  author={Waldvogel, Marcel and Kollek, Jürgen}
}
kops.citation.iso690WALDVOGEL, Marcel, Jürgen KOLLEK, 2014. SIEGE : Service-Independent Enterprise-GradE protection against password scansdeu
kops.citation.iso690WALDVOGEL, Marcel, Jürgen KOLLEK, 2014. SIEGE : Service-Independent Enterprise-GradE protection against password scanseng
kops.citation.rdf
<rdf:RDF
    xmlns:dcterms="http://purl.org/dc/terms/"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
    xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
    xmlns:bibo="http://purl.org/ontology/bibo/"
    xmlns:dspace="http://digital-repositories.org/ontologies/dspace/0.1.0#"
    xmlns:foaf="http://xmlns.com/foaf/0.1/"
    xmlns:void="http://rdfs.org/ns/void#"
    xmlns:xsd="http://www.w3.org/2001/XMLSchema#" > 
  <rdf:Description rdf:about="https://kops.uni-konstanz.de/server/rdf/resource/123456789/26113">
    <dcterms:title>SIEGE : Service-Independent Enterprise-GradE protection against password scans</dcterms:title>
    <dcterms:rights rdf:resource="https://rightsstatements.org/page/InC/1.0/"/>
    <dc:language>eng</dc:language>
    <dcterms:isPartOf rdf:resource="https://kops.uni-konstanz.de/server/rdf/resource/123456789/36"/>
    <void:sparqlEndpoint rdf:resource="http://localhost/fuseki/dspace/sparql"/>
    <dcterms:hasPart rdf:resource="https://kops.uni-konstanz.de/bitstream/123456789/26113/1/Waldvogel_261136.pdf"/>
    <dc:date rdf:datatype="http://www.w3.org/2001/XMLSchema#dateTime">2014-02-03T09:16:10Z</dc:date>
    <dspace:hasBitstream rdf:resource="https://kops.uni-konstanz.de/bitstream/123456789/26113/1/Waldvogel_261136.pdf"/>
    <bibo:uri rdf:resource="http://kops.uni-konstanz.de/handle/123456789/26113"/>
    <dc:contributor>Waldvogel, Marcel</dc:contributor>
    <dc:creator>Waldvogel, Marcel</dc:creator>
    <foaf:homepage rdf:resource="http://localhost:8080/"/>
    <dcterms:issued>2014</dcterms:issued>
    <dc:creator>Kollek, Jürgen</dc:creator>
    <dspace:isPartOfCollection rdf:resource="https://kops.uni-konstanz.de/server/rdf/resource/123456789/49"/>
    <dspace:isPartOfCollection rdf:resource="https://kops.uni-konstanz.de/server/rdf/resource/123456789/36"/>
    <dcterms:available rdf:datatype="http://www.w3.org/2001/XMLSchema#dateTime">2014-02-03T09:16:10Z</dcterms:available>
    <dc:contributor>Kollek, Jürgen</dc:contributor>
    <dc:rights>terms-of-use</dc:rights>
    <dcterms:abstract xml:lang="eng">Security is one of the main challenges today, complicated significantly by the heterogeneous and open academic networks with thousands of different applications. Botnet-based brute-force password scans are common security threat against the open academic networks. Common defenses are hard to maintain, error-prone and do not reliably discriminate between user error and coordinated attack. In this paper, we present a novel approach, which allows to secure many network services at once. By combining in-app tracking, local and global crowdsourcing, geographic information, and probabilistic user-bot distinction through differential password analysis, our PAM-based detection module can provide higher accuracy and faster blocking of botnets. In the future, we aim to make the mechanism even more generic and thus provide a distributed defense against one of the strongest threats against our infrastructure.</dcterms:abstract>
    <dcterms:isPartOf rdf:resource="https://kops.uni-konstanz.de/server/rdf/resource/123456789/49"/>
  </rdf:Description>
</rdf:RDF>
kops.description.openAccessopenaccessgreen
kops.flag.knbibliographytrue
kops.identifier.nbnurn:nbn:de:bsz:352-261136deu
kops.submitter.emailmarcel.waldvogel@uni-konstanz.dedeu
relation.isAuthorOfPublication84e1ce62-b720-46ef-b156-ce00a632dd4f
relation.isAuthorOfPublication45a2c78a-bdb9-4ceb-98d3-f0214cb70118
relation.isAuthorOfPublication.latestForDiscovery84e1ce62-b720-46ef-b156-ce00a632dd4f

Dateien

Originalbündel

Gerade angezeigt 1 - 1 von 1
Vorschaubild nicht verfügbar
Name:
Waldvogel_261136.pdf
Größe:
471.08 KB
Format:
Adobe Portable Document Format
Waldvogel_261136.pdf
Waldvogel_261136.pdfGröße: 471.08 KBDownloads: 516

Lizenzbündel

Gerade angezeigt 1 - 1 von 1
Vorschaubild nicht verfügbar
Name:
license.txt
Größe:
1.92 KB
Format:
Plain Text
Beschreibung:
license.txt
license.txtGröße: 1.92 KBDownloads: 0