• DocumentCode
    3039934
  • Title

    Effective detection mechanism for TCP based hybrid covert channels in secure communication

  • Author

    Jadhav, Mamatha V. ; Kattimani, Suvarna L.

  • Author_Institution
    Comput. Sci. & Eng., M.S.Ramaiah Inst. of Technol., Bangalore, India
  • fYear
    2011
  • fDate
    23-24 March 2011
  • Firstpage
    1123
  • Lastpage
    1128
  • Abstract
    Covert channels are malicious conversation in a legitimate secured network communication that violates the security policies laid down. Covert channels are hidden, intended design in the legitimate communication whose motto is to leak information. Trapdoors are unintended design with a communication system that exists in network covert channels as a part of rudimentary protocols. Subliminal channel, a variant of covert channel works similarly as network covert channel except that trapdoor is set in cryptographic algorithm. Feel of covertness can better be understood by classical problem-“The Prisoner´s Problem” illustrated by G. Simmons and further exploration of attacks based on it can be understood by Dr. Adam Young´s book on Malicious Cryptography. In this paper, Hybrid Covert Channel is visualized as composition of covert channel in TCP and subliminal channel in SSL. Hybrid Covert Channel is the co-existence of homogeneous or heterogeneous network covert channel variants either at same instant or at regular instant of time. Hybrid covert channels are a major threat for security which is clearly unacceptable in presence of secure network communication. The paper deals with detection of intra LAN covert activities and developing a detection engine that can detect or analyze the hybrid covert channel on Transport layer with a clear understanding of theoretical literatures of composed covert channels.
  • Keywords
    cryptography; telecommunication channels; telecommunication security; transport protocols; SSL; TCP based hybrid covert channels; channel detection mechanism; cryptographic algorithm; heterogeneous network covert channel; homogeneous network covert channel; intra LAN covert activities; legitimate secured network communication; malicious cryptography; prisoner problem; secure communication; secure network communication; subliminal channel; transport layer; Cryptography; Databases; Engines; Protocols; Receivers; Servers; Hybrid Covert channel; Transport Layer; intra LAN; subliminal channel;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Emerging Trends in Electrical and Computer Technology (ICETECT), 2011 International Conference on
  • Conference_Location
    Tamil Nadu
  • Print_ISBN
    978-1-4244-7923-8
  • Type

    conf

  • DOI
    10.1109/ICETECT.2011.5760288
  • Filename
    5760288