| タイトル | Traceable Network Technology: Studies on Countermeasures for Thwarting Spoofing Attacks: Cases of IP Address Spoofing and Web Spoofing |
| 著者(日) | 宮本, 大輔; 櫨山, 寛章; 門林, 雄基 |
| 著者(英) | Miyamoto, Daisuke; Hazeyama, Hiroaki; Kadobayashi, Yoki |
| 著者所属(日) | 東京大学情報基盤センター; 奈良先端科学技術大学院大学情報科学研究科; 情報通信研究機構ネットワークセキュリティ研究所(NICT) : 奈良先端科学技術大学院大学情報科学研究科 |
| 著者所属(英) | Information Technology Center, University of Tokyo; The Graduate School of Information Science, Nara Institute of Science and Technology; Network Security Research Institute, National Institute of Information and Communications Technology (NICT) : The Graduate School of Information Science, Nara Institute of Science and Technology |
| 発行日 | 2012-03-06 |
| 発行機関など | 情報通信研究機構(NICT) National Institute of Information and Communications Technology (NICT) |
| 刊行物名 | 情報通信研究機構英文論文集 Journal of the National Institute of Information and Communications Technology |
| 巻 | 58 |
| 号 | 3-4 |
| 開始ページ | 99 |
| 終了ページ | 111 |
| 刊行年月日 | 2012-03-06 |
| 言語 | eng |
| 抄録 | This article intends to give case studies for of thwarting spoofing attack. Spoofing is widely used when attackers attempt to increase the success rate of their cybercrimes. In the context of Denial of Service (DoS) attacks, IP address spoofing is employed to camouflage the attacker's location. In the context of social engineering, Web spoofing is used to persuade victims into giving away personal information. A Web spoofing attacker creates a convincing but false copy of the legitimate enterprises' web sites. The forged websites are also known as phishing sites. Our research group developed the algorithms, systems and practices, all of which analyze cybercrimes that employ spoofing techniques. In order to thwart Dos attacks, we show the deployment scenario for IP traceback systems. IP traceback aims to locate attack source, regardless of the spoofed source IP addresses. Unfortunately, IP traceback requires that its systems are widely deployed across the internet. We argue the practical deployment scenario within internets of China, Japan, and South Korea. We also develop a detection method for phishing sites. Currently, one of the most important research agenda to counter phishing is improving the accuracy for detecting phishing sites. Our approach, named HumanBoost, aims at improving the detection accuracy by utilizing Web user's past trust decisions. Based on our subject experiments, we analyze the average detection accuracy of both HumanBoost and CANTINA. |
| 内容記述 | 形態: 図版あり Physical characteristics: Original contains illustrations |
| キーワード | IP spoofing; Web spoofing; Internet emulation; IP traceback; Machine learning |
| 資料種別 | Technical Report |
| ISSN | 1349-3205 |
| NCID | AA12009289 |
| SHI-NO | AA0065163009 |
| URI | https://repository.exst.jaxa.jp/dspace/handle/a-is/20390 |
|