2016 Fiscal Year Final Research Report
The design and Implementation of the detection and defense system against packet amplifier attacks using open resolver DNS servers.
Project/Area Number |
26330101
|
Research Category |
Grant-in-Aid for Scientific Research (C)
|
Allocation Type | Multi-year Fund |
Section | 一般 |
Research Field |
Information network
|
Research Institution | The University of Tokyo |
Principal Investigator |
SEKIYA Yuji 東京大学, 情報基盤センター, 准教授 (30361687)
|
Research Collaborator |
TAZAKI Hajime 株式会社IIJイノベーションインスティテュート (10611303)
|
Project Period (FY) |
2014-04-01 – 2017-03-31
|
Keywords | サイバーセキュリティ / DNS / SDN / NFV / Hadoop / 深層学習 |
Outline of Final Research Achievements |
In this research, we propose a method and system to analyze predictions of attack against packet amplification attack, mainly DNS. We released the packaged system as open software on that anyone can use. In addition, we published some examples of detection using this system and proposed a method for defending attacks leading to packet amplification attacks and information leaks by using SDN technology. This defense method works on Internet eXchange (IX) which is a public backbone part on the Internet, and it becomes a more effective defense measure by making it cooperate with multiple IX. In addition, we investigated the possibility of attack prediction using deep learning to make proactive attack measure.
|
Free Research Field |
インターネットプロトコル
|