DocumentCode
3136156
Title
Detecting and defending against Web-server fingerprinting
Author
Lee, Dustin ; Rowe, Jeff ; Ko, Calvin ; Levitt, Karl
Author_Institution
Comput. Security Lab., California Univ., Davis, CA, USA
fYear
2002
fDate
2002
Firstpage
321
Lastpage
330
Abstract
Cyber attacks continue to increase in sophistication. Advanced attackers often gather information about a target system before launching a precise attack to exploit a discovered vulnerability. This paper discusses techniques for remote identification of web servers and suggests possible defenses to the probing activity. General concepts of finger-printing and their application to the identification of Web servers, even where server information has been omitted are described and methodologies for detecting and limiting such activity are discussed.
Keywords
Internet; security of data; Web servers; Web-server fingerprinting; cyber attacks; remote identification; target system; vulnerability; Application software; Computer security; File servers; Fingerprint recognition; Information security; Laboratories; Network servers; Protection; Reverse engineering; Web server;
fLanguage
English
Publisher
ieee
Conference_Titel
Computer Security Applications Conference, 2002. Proceedings. 18th Annual
ISSN
1063-9527
Print_ISBN
0-7695-1828-1
Type
conf
DOI
10.1109/CSAC.2002.1176304
Filename
1176304
Link To Document