首页    期刊浏览 2024年11月24日 星期日
登录注册

文章基本信息

  • 标题:Analysis of Port Hopping for Proactive Cyber Defense
  • 本地全文:下载
  • 作者:Yue-Bin Luo ; Bao-Sheng Wang ; Gui-Lin Cai
  • 期刊名称:International Journal of Security and Its Applications
  • 印刷版ISSN:1738-9976
  • 出版年度:2015
  • 卷号:9
  • 期号:2
  • 页码:123-134
  • DOI:10.14257/ijsia.2015.9.2.12
  • 出版社:SERSC
  • 摘要:Port hopping is a typical proactive cyber defense technology, which hides the service identity and confuses attackers during reconnaissance by constantly altering service ports. Although several kinds of port hopping mechanisms have been proposed and implemented, but it is still unknown how effective port hopping is and under what circumstances it is a viable moving target defense because the existed works are limited and they usually discuss only a few parameters. Besides, in many cases the defense effectiveness has been studied empirically. In order to have an insight into the effectiveness of port hopping, this paper introduces a quantitative analysis based on the urn model, which quantifies the probability of attacker success in terms of port pool size, number of probes, number of vulnerable services, and hopping frequency. Theoretical analysis shows that port hopping is an effective and promising proactive defense technology in thwarting cyber attacks.
  • 关键词:Port Hopping; Network Security; Moving Target Defense; Proactive Defense
国家哲学社会科学文献中心版权所有