节点文献

初始序列号生成算法的安全性研究

Research on the Security of Initial Sequence Number Generation Arithmetic

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 吕艳丽李肖坚夏春和刘书志

【Author】 Lü Yanli, Li Xiaojian, Xia Chunhe, and Liu Shuzhi(Beijing Key Laboratory of Network Technology, School of Computer Science & Engineering, Beihang University, Beijing 100083)

【机构】 北京航空航天大学计算机学院网络技术北京市重点实验室北京航空航天大学计算机学院网络技术北京市重点实验室 北京100083北京100083

【摘要】 许多操作系统都采用了强健的TCPISN生成算法,然而TCPReset攻击的成功率并非人们想象的只有1/232·基于PaulWatson的滑动窗口TCPReset攻击方法,并结合了混沌时间序列分析进行序列号猜测的技术,提出一种新的TCPReset攻击方法来验证TCPISN生成算法的安全性·在Windows操作系统下的实验结果表明,该方法增大了TCPReset攻击的成功概率,攻击发送17个RST包在10ms之内即可断开目标TCP连接·目前操作系统的TCPISN生成算法仍有很大安全风险·

【Abstract】 Many operating systems have already adopted strong TCP ISN generation methods. However, the probability of successful TCP Reset attack is not only1?2~32 as people expected. Based on Paul Waston’s “slipping in the window: TCP Reset attacks” method, and combined with the sequence number guessing technology which uses chaotic time series analysis, a new TCP Reset attack method is presented in this paper in order to validate the security of TCP ISN generation methods. The experiment results under Windows operating system indicate that this method increases the success probability of TCP Reset attack, and the attackers can terminate the established TCP connection by sending only 17 RST packets in 10 ms. Present Operation Systems’ TCP ISN generation methods still have serious security risk.

【基金】 航空基金项目;总装备部预研基金项目;北京教育委员会共建项目建设计划基金项目(SYS100060412)~~
  • 【文献出处】 计算机研究与发展 ,Journal of Computer Research and Development , 编辑部邮箱 ,2005年11期
  • 【分类号】TP393.01
  • 【被引频次】13
  • 【下载频次】223
节点文献中: 

本文链接的文献网络图示:

本文的引文网络