• DocumentCode
    423246
  • Title

    Punishing manipulation attacks in mobile agent systems

  • Author

    Esparza, Oscar ; Soriano, Miguel ; Munoz, Jose L. ; Forné, Jordi

  • Author_Institution
    Tech. Univ. of Catalonia, Barcelona, Spain
  • Volume
    4
  • fYear
    2004
  • fDate
    29 Nov.-3 Dec. 2004
  • Firstpage
    2235
  • Abstract
    Mobile agents are software entities consisting of code, data and state that can migrate autonomously from host to host performing some actions on behalf of a user. Unfortunately, security issues restrict the use of mobile agents, despite the benefits. The protection of mobile agents against the attacks of malicious hosts is considered the most difficult security problem to solve in mobile agent systems. Previously, the mobile agent watermarking approach (MAW) was presented as a new attack detection technique to aid solving the problem of malicious hosts. That approach was based on embedding a fixed watermark into the mobile agent. Some improvements are now introduced to MAW. Instead of a fixed watermark, the origin host embeds a watermark that can change dynamically during execution. In each host, the marked code creates a data container where the watermark is transferred and the results are hidden. When the agent returns home, the origin host verifies the execution integrity by applying a set of integrity rules to the containers. The paper also explains how MAW can be used to punish malicious hosts by using a trusted third party, the host revocation authority.
  • Keywords
    data encapsulation; mobile agents; security of data; watermarking; dynamically changing watermark; host revocation authority; integrity rules; malicious hosts; manipulation attacks; marked code; mobile agent watermarking; origin host; security issues; trusted third party; Bandwidth; Containers; Data mining; Data security; Embedded software; Message passing; Mobile agents; Protection; Software performance; Watermarking;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Global Telecommunications Conference, 2004. GLOBECOM '04. IEEE
  • Print_ISBN
    0-7803-8794-5
  • Type

    conf

  • DOI
    10.1109/GLOCOM.2004.1378406
  • Filename
    1378406