• Search Research Projects
  • Search Researchers
  • How to Use
  1. Back to previous page

The design and Implementation of the detection and defense system against packet amplifier attacks using open resolver DNS servers.

Research Project

Project/Area Number 26330101
Research Category

Grant-in-Aid for Scientific Research (C)

Allocation TypeMulti-year Fund
Section一般
Research Field Information network
Research InstitutionThe University of Tokyo

Principal Investigator

SEKIYA Yuji  東京大学, 情報基盤センター, 准教授 (30361687)

Co-Investigator(Kenkyū-buntansha) 石原 知洋  東京大学, 大学院総合文化研究科, 助教 (60588242)
Research Collaborator TAZAKI Hajime  株式会社IIJイノベーションインスティテュート (10611303)
Project Period (FY) 2014-04-01 – 2017-03-31
Project Status Completed (Fiscal Year 2016)
Budget Amount *help
¥4,550,000 (Direct Cost: ¥3,500,000、Indirect Cost: ¥1,050,000)
Fiscal Year 2016: ¥1,040,000 (Direct Cost: ¥800,000、Indirect Cost: ¥240,000)
Fiscal Year 2015: ¥1,430,000 (Direct Cost: ¥1,100,000、Indirect Cost: ¥330,000)
Fiscal Year 2014: ¥2,080,000 (Direct Cost: ¥1,600,000、Indirect Cost: ¥480,000)
Keywordsサイバーセキュリティ / DNS / SDN / NFV / Hadoop / 深層学習 / セキュリティ / 機械学習 / トラフィック解析 / DDoS / Botnet / ボットネット / 攻撃緩和 / DDoS攻撃 / NTP / 増幅攻撃 / hadoop
Outline of Final Research Achievements

In this research, we propose a method and system to analyze predictions of attack against packet amplification attack, mainly DNS. We released the packaged system as open software on that anyone can use. In addition, we published some examples of detection using this system and proposed a method for defending attacks leading to packet amplification attacks and information leaks by using SDN technology. This defense method works on Internet eXchange (IX) which is a public backbone part on the Internet, and it becomes a more effective defense measure by making it cooperate with multiple IX. In addition, we investigated the possibility of attack prediction using deep learning to make proactive attack measure.

Report

(4 results)
  • 2016 Annual Research Report   Final Research Report ( PDF )
  • 2015 Research-status Report
  • 2014 Research-status Report
  • Research Products

    (14 results)

All 2017 2016 2015 2014 Other

All Int'l Joint Research (2 results) Journal Article (9 results) (of which Peer Reviewed: 3 results,  Acknowledgement Compliant: 4 results,  Open Access: 1 results) Presentation (2 results) (of which Int'l Joint Research: 1 results) Remarks (1 results)

  • [Int'l Joint Research] UNITEC 工科大学(New Zealand)

    • Related Report
      2016 Annual Research Report
  • [Int'l Joint Research] Unitec Institute of Technology(ニュージーランド)

    • Related Report
      2015 Research-status Report
  • [Journal Article] Cyber attack prediction using social data analysis2017

    • Author(s)
      Munkhdorj Baaatarsuren, Yuji Sekiya
    • Journal Title

      Journal of High Speed Networks

      Volume: 印刷中 Issue: 2 Pages: 109-135

    • DOI

      10.3233/jhs-170560

    • Related Report
      2016 Annual Research Report
    • Peer Reviewed / Acknowledgement Compliant
  • [Journal Article] HTTP通信に着目したDeep Learningに基づくマルウェア感染端末検知手法と検知性能評価2017

    • Author(s)
      西山泰史, 熊谷充敏, 岡野 靖, 神谷和憲, 谷川真樹, 岡田和也, 関谷勇司
    • Journal Title

      電子情報通信学会信学技報

      Volume: vol. 116, no. 522

    • Related Report
      2016 Annual Research Report
  • [Journal Article] Cyber Attack Prediction using Social Data Analysis2016

    • Author(s)
      Munkhdorj Baatarsuren, Yuji Sekiya
    • Journal Title

      Proceedings of the 2nd International Conference on Data Compression, Communication, Processing, and Security.

      Volume: -

    • Related Report
      2016 Annual Research Report
    • Peer Reviewed / Acknowledgement Compliant
  • [Journal Article] 出口対策に向けた耐感染性を有したネットワーク監視並びに防御システムの検討2016

    • Author(s)
      佐藤 康次, 関谷 勇司
    • Journal Title

      電子情報通信学会信学技報

      Volume: vol. 116, no. 361

    • Related Report
      2016 Annual Research Report
  • [Journal Article] Case-based study and Discussion of threat analysis on DNS traffic using MATATABI platform2016

    • Author(s)
      Tomohiro Ishihara, Yuji Sekiya
    • Journal Title

      電子情報通信学会信学技報

      Volume: vol. 116, no. 282

    • Related Report
      2016 Annual Research Report
    • Acknowledgement Compliant
  • [Journal Article] ニュース記事解析に基づいたサイバー攻撃予測2016

    • Author(s)
      バータルスレン ムンフドルジ, 関谷 勇司
    • Journal Title

      電子情報通信学会信学技法

      Volume: vol. 115, no. 484 Pages: 165-170

    • Related Report
      2015 Research-status Report
  • [Journal Article] 一歩進んだセキュリティ対策2015

    • Author(s)
      関谷勇司, 岡田 和也
    • Journal Title

      技術評論社 SoftwareDesign

      Volume: 10月号 Pages: 59-67

    • Related Report
      2015 Research-status Report
  • [Journal Article] 昨今のサイバー攻撃の手法とその対策について2014

    • Author(s)
      橋本 賢一郎, 遠峰 隆史, 関谷 勇司
    • Journal Title

      電子情報通信学会信学技報

      Volume: 114 Pages: 51-56

    • Related Report
      2014 Research-status Report
  • [Journal Article] DNSSEC simulator for realistic estimation of deployment impacts2014

    • Author(s)
      Yuji Sekiya, Tomohiro Ishihara, Hajime Tazaki
    • Journal Title

      IEICE Communications Express

      Volume: 3 Issue: 10 Pages: 305-310

    • DOI

      10.1587/comex.3.305

    • NAID

      130004699744

    • ISSN
      2187-0136
    • Related Report
      2014 Research-status Report
    • Peer Reviewed / Open Access / Acknowledgement Compliant
  • [Presentation] MATATABI : Cyber Threat Analysis and Defense Platform using Huge Amount of Datasets2015

    • Author(s)
      Yuji Sekiya
    • Organizer
      APNIC 40, APOPS Technical Session
    • Place of Presentation
      ジャカルタ, インドネシア
    • Year and Date
      2015-09-03
    • Related Report
      2015 Research-status Report
    • Int'l Joint Research
  • [Presentation] MATATABI: Multi-layer Threat Analysis Platform with Hadoop2014

    • Author(s)
      Hajime Tazaki, Kazuya Okada, Yuji Sekiya, Youki Kadobayashi
    • Organizer
      In Proceedings of International Workshop on Building Analysis Datasets and Gathering Experience Returns for Security (BADGERS 2014)
    • Place of Presentation
      Wroclaw, Poland
    • Year and Date
      2014-09-11
    • Related Report
      2014 Research-status Report
  • [Remarks] Network Muscle Learning

    • URL

      https://nml.sekiya-lab.info/

    • Related Report
      2016 Annual Research Report

URL: 

Published: 2014-04-04   Modified: 2022-02-22  

Information User Guide FAQ News Terms of Use Attribution of KAKENHI

Powered by NII kakenhi