Network Security White Papers

Forensic Analysis for Epidemic Attacks in Federated Networks

Overview This paper presents the design of a Network Forensic Alliance (NFA), to allow multiple Administrative Domains (ADs) to jointly locate the origin of epidemic spreading attacks. ADs in the NFA collaborate in a distributed protocol for post-mortem analysis of worm-like attacks. Information exchange between any two participating ADs is limited to traffic records that are known to both sides, maintaining the privacy of participants. Such architecture is incentive-compatible - participants benefit by gaining better local investigative capabilities, even with partial deployment. Further, it shows that by sharing local investigation results, ADs can achieve global investigative capabilities that are comparable to a centralized implementation with access to global traffic records.

Further White Paper Details
PublisherCarnegie Mellon University File FormatPDF
Date PublishedSeptember 2006
FormatWhite Papers   
Topics
Thin clients switch on digitally excluded

Thin clients switch on digitally excluded

Case study: Digital inclusion project tackles social exclusion in Liverpool more

Renault goes multilingual

Renault goes multilingual

Case study: Translation tech turns docs into 23 languages… more


Quick Sitemap Links: