Title :
TPAH: A universal and multi-platform deployable Port and Address Hopping mechanism
Author :
Yue-Bin Luo; Bao-Sheng Wang; Xiao-Feng Wang; Xiao-Feng Hu; Gui-Lin Cai
Author_Institution :
College of computer, National University of Defense Technology, Changsha, China
fDate :
4/1/2015 12:00:00 AM
Abstract :
Port and address hopping is a novel proactive defense technology motivated by frequency hopping, which is an important and effective component of moving target defense. In this paper, we propose a new technique, called TAP-based Port and Address Hopping (TPAH), which is a universal port and address hopping mechanism fully compatible with the current various mainstream operating system (OS) platforms. The main strength of this mechanism lies in the simplification of both service hiding and attack resistance. We performed experimental analysis and tests through actual implementation to study the effectiveness and the overhead of the mechanism against port scanning, DoS flooding attacks. Our experiments show that the proposed port and address hopping mechanism is effective in mitigating and thwarting various malicious attacks, while introduces a low overhead.
Conference_Titel :
Information and Communications Technologies (ICT 2015), 2015 International Conference on
Print_ISBN :
978-1-84919-994-0
DOI :
10.1049/cp.2015.0230