计算机科学
网络数据包
解析
协议(科学)
背景(考古学)
深包检验
计算机网络
过程(计算)
入侵检测系统
计算机安全
人工智能
操作系统
古生物学
生物
医学
替代医学
病理
作者
Ali ElShakankiry,Thomas Dean
标识
DOI:10.1109/pst.2017.00019
摘要
Network protocol parsers constantly dissect a large number of packets to place into internal data structures for further processing. We propose an approach that automatically generates custom protocol parsers to process network traffic to be used as part of an Intrusion Detection System. This paper takes a look at the case of command and control/industrial control networks that are characterized by a limited number of known protocols. We present a robust, secure, and high-performing solution that deals with the issues that have only partially been addressed in this domain.
科研通智能强力驱动
Strongly Powered by AbleSci AI