Title :
A framework for detecting malformed messages in SIP networks
Author :
Geneiatakis, Dimitris ; Kambourakis, Georgios ; Dagiuklas, Tasos ; Lambrinoudakis, Costas ; Gritzalis, Stefanos
Author_Institution :
Dept. of Inf. & Commun. Syst. Eng., Aegean Univ.
Abstract :
Internet telephony like any other Internet service suffers from security flaws caused by various implementation errors (e.g. in end-users terminals, protocols, operating systems, hardware, etc). These implementation problems usually lead VoIP subsystems (e.g. SIP servers) to various unstable operations whenever trying to process a message not conforming to the underlying standards. As Internet telephony becomes more and more popular, attackers will attempt to exhaustively "test" implementations\´ robustness, transmitting various types of malformed messages to them. Since it is almost infeasible to avoid or predict every potential error caused during the developing process of these subsystems, it is necessary to specify an appropriate and robust, from the security point of view, framework that will facilitate the successful detection and handling of any kind of malformed messages aiming to destruct the provided service. In this paper, we adequately present malformed message attacks against SIP network servers and/or SIP end-user terminals and we propose a new detection "framework" of prototyped attacks\´ signatures that can assist the detection procedure and provide effective defence against this category of attacks
Keywords :
Internet telephony; electronic messaging; signalling protocols; telecommunication security; Internet telephony; SIP end-user terminals; SIP networks; malformed messages detection; prototyped attacks signatures; Hardware; Internet telephony; Network servers; Operating systems; Protocols; Prototypes; Robustness; Testing; Web and internet services; Web server;
Conference_Titel :
Local and Metropolitan Area Networks, 2005. LANMAN 2005. The 14th IEEE Workshop on
Conference_Location :
Crete
Print_ISBN :
0-7803-9565-4
DOI :
10.1109/LANMAN.2005.1541543