Title :
Case study on exploitation, detection and prevention of user account DoS through Advanced Persistent Threats
Author :
K. P. B. Anushka; Chamantha;A. P. Karunaweera;P. R. Priyashantha;H. D. R. Wickramasinghe;W. A. V. M. G. Wijethunge
Author_Institution :
Sch. of Comput., Univ. of Colombo, Colombo, Sri Lanka
Abstract :
Security analysts implement various security mechanisms to protect systems from attackers. Even though these mechanisms try to secure systems, a talented attacker may use these same techniques to launch a sophisticated attack. This paper discuss about such an attack called as user account Denial of Service (DoS) where an attacker uses user account lockout features of the application to lockout all user accounts causing an enterprise wide DoS. The attack has being simulated usingastealthy attack mechanism called as Advanced Persistent Threats (APT) using a XMPP based botnet. Through the simulation, researchers discuss about the patterns associated with the attack which can be used to detect the attack in real time and how the attack can be prevented from the perspective of developers, system engineers and security analysts.
Keywords :
"Monitoring","Databases","ISO Standards","Protocols","Irrigation","Servers","Electronic mail"
Conference_Titel :
Advances in ICT for Emerging Regions (ICTer), 2015 Fifteenth International Conference on
Print_ISBN :
978-1-4673-9440-6
DOI :
10.1109/ICTER.2015.7377687