• DocumentCode
    3136156
  • Title

    Detecting and defending against Web-server fingerprinting

  • Author

    Lee, Dustin ; Rowe, Jeff ; Ko, Calvin ; Levitt, Karl

  • Author_Institution
    Comput. Security Lab., California Univ., Davis, CA, USA
  • fYear
    2002
  • fDate
    2002
  • Firstpage
    321
  • Lastpage
    330
  • Abstract
    Cyber attacks continue to increase in sophistication. Advanced attackers often gather information about a target system before launching a precise attack to exploit a discovered vulnerability. This paper discusses techniques for remote identification of web servers and suggests possible defenses to the probing activity. General concepts of finger-printing and their application to the identification of Web servers, even where server information has been omitted are described and methodologies for detecting and limiting such activity are discussed.
  • Keywords
    Internet; security of data; Web servers; Web-server fingerprinting; cyber attacks; remote identification; target system; vulnerability; Application software; Computer security; File servers; Fingerprint recognition; Information security; Laboratories; Network servers; Protection; Reverse engineering; Web server;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computer Security Applications Conference, 2002. Proceedings. 18th Annual
  • ISSN
    1063-9527
  • Print_ISBN
    0-7695-1828-1
  • Type

    conf

  • DOI
    10.1109/CSAC.2002.1176304
  • Filename
    1176304