Propose approach for UDP random and sequential scanning detection based on the connection failure messages
Date
2013-11Author
Mohammed F.R., Anbar
Ramadass, Sureswaran, Prof.
Manickam, Selvakumar
Alhamza, Munther
Esraa, Alomari
Metadata
Show full item recordAbstract
Network scanning usually lunched by attackers for exploring and gathering information about the target network, this information may includes the network topology and services running on the network, based on the gathered information the attacker will put his attack plan to gain access to the target network. Attackers sometimes scan the target network with none previous knowledge concerning the active service or host in the target network which will generate a high ratio of connection failure message which come in form of ICMP type 3 code 3 packets (port unreachable) and ICMP type 3 code 1 packets (host unreachable). This paper will propose approach for random and sequential type of UDP scanning detection based on the connection failures messages
URI
http://www.praiseworthyprize.com/IRECOS-latest/IRECOS_vol_8_n_11.htmlhttp://dspace.unimap.edu.my:80/dspace/handle/123456789/32749