• DocumentCode
    3080874
  • Title

    Analysis of Credential Stealing Attacks in an Open Networked Environment

  • Author

    Sharma, A. ; Kalbarczyk, Z. ; Iyer, R. ; Barlow, J.

  • Author_Institution
    Coordinated Sci. Lab., Univ. of Illinois at Urbana-Champaign, Urbana, IL, USA
  • fYear
    2010
  • fDate
    1-3 Sept. 2010
  • Firstpage
    144
  • Lastpage
    151
  • Abstract
    This paper analyses the forensic data on credential stealing incidents over a period of 5 years across 5000 machines monitored at the National Center for Supercomputing Applications at the University of Illinois. The analysis conducted is the first attempt in an open operational environment (i) to evaluate the intricacies of carrying out SSH-based credential stealing attacks, (ii) to highlight and quantify key characteristics of such attacks, and (iii) to provide the system level characterization of such incidents in terms of distribution of alerts and incident consequences.
  • Keywords
    computer crime; computer forensics; computer network security; open systems; Illinois University; Intrusion detection; National Center for Supercomputing Application; credential stealing attack; forensic data; open networked environment; Authentication; Detectors; Forensics; IP networks; Linux; Monitoring; Credential stealing; Incident analysis; Intrusion detection;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Network and System Security (NSS), 2010 4th International Conference on
  • Conference_Location
    Melbourne, VIC
  • Print_ISBN
    978-1-4244-8484-3
  • Electronic_ISBN
    978-0-7695-4159-4
  • Type

    conf

  • DOI
    10.1109/NSS.2010.56
  • Filename
    5635533