Title :
Delude Remote Operating System (OS) Scan by Honeyd
Author :
Zhang, Xinyuan ; Zheng, Lianqing
Author_Institution :
Coll. of Telecommun. Eng., Air Force Eng. Univ., Xi´´an, China
Abstract :
Remote Operating System (OS) detection is an important technique in the network system security and becomes more and more popular these days, because it has close connection with the vulnerability just for an open port. This paper detailedly introduces the techniques of active TCP/IP stack fingerprinting in the remote OS scanning, presents how to simulate the fingerprints of OS which will react to OS detection, uses Honeyd(a software of honeypot) to run some virtual OS to delude remote OS scan.
Keywords :
computer network security; network operating systems; transport protocols; virtual reality; Honeyd; active TCP/IP stack fingerprinting; honeypot software; network system security; remote OS scanning; remote operating system detection; virtual OS; Computer science; Educational institutions; Electronic mail; Fingerprint recognition; Information security; Linux; Operating systems; Probes; Sampling methods; TCPIP; Fingerprinting; Honeyd; Nmap; Remote OS Scanning;
Conference_Titel :
Computer Science and Engineering, 2009. WCSE '09. Second International Workshop on
Conference_Location :
Qingdao
Print_ISBN :
978-0-7695-3881-5
DOI :
10.1109/WCSE.2009.862