Title :
Trustworthy Software Reliability Research Based on UNIX Login Packet Security Analysis
Author :
Zhu Ming-xun ; Luo Xin-xing
Author_Institution :
Inf. Manage. Dept, Center South Univ., Changsha, China
Abstract :
As the modern society becomes increasingly dependent on software, how to develop Trustworthy Software(TS) systems is considered a critical issue by academia, government and industry. The domain of our work focused on the reliability research on UNIX system, which is the famous and widely used operation system in the world, and adopts C/S software architecture. However, when the user remote login the UNIX system, the login packets that contain private messages such as account and password easily captured and cracked by the hackers because they are transmitting in the network without encryption. Firstly, we review the main principle of packet capture technology. Then to aim at UNIX remote login packet, we give a detailed case to illustrate the whole process to invade UNIX successfully. The process consists of following steps: how to use packet capture technology to capture it illegally in the network, how to further analysis its´ frame structure, how to obtain the secret information without user authorization by deciphering it. They are also the innovations of this article. Finally, we give some suggestions on preventing from and striking back packet capture to satisfy the reliability system requirements.
Keywords :
Unix; authorisation; computer crime; cryptography; software reliability; C/S software architecture; TS systems; UNIX login packet security analysis; UNIX remote login packet; UNIX system; encryption; hackers; login packets; operation system; packet capture technology; password; private messages; reliability system requirements; trustworthy software reliability research; trustworthy software systems; user authorization; Monitoring; Protocols; Reliability; Security; Servers; Software; Switches; Security; UNIX; packet capture; port mirroring; software reliability;
Conference_Titel :
E-Business and E-Government (ICEE), 2010 International Conference on
Conference_Location :
Guangzhou
Print_ISBN :
978-0-7695-3997-3
DOI :
10.1109/ICEE.2010.348