Flow-based Brute-force Attack Detection

Authors

VYKOPAL Jan DRAŠAR Martin WINTER Philipp

Year of publication 2013
Type Chapter of a book
MU Faculty or unit

Institute of Computer Science

Citation
Description Brute-force attacks are a prevalent phenomenon that is getting harder to successfully detect on a network level due to increasing volume and encryption of network traffic and growing ubiquity of high-speed networks. Although the research in this field advanced considerably, there still remain classes of attacks that are hard to detect. In this chapter, we present several methods for the detection of brute-force attacks based on the analysis of network flows. We discuss their strengths and shortcomings as well as shortcomings of flow-based methods in general. We also demonstrate the fragility of some methods by introducing detection evasion techniques.
Related projects:

You are running an old browser version. We recommend updating your browser to its latest version.

More info