网络与信息安全学报 ›› 2021, Vol. 7 ›› Issue (4): 42-52.doi: 10.11959/j.issn.2096-109x.2021045

• 专栏Ⅰ:网络攻防技术 • 上一篇    下一篇

基于网络特征混淆的欺骗防御技术研究

赵金龙, 张国敏, 邢长友   

  1. 陆军工程大学指挥控制工程学院,江苏 南京 210001
  • 修回日期:2021-01-20 出版日期:2021-08-15 发布日期:2021-08-01
  • 作者简介:赵金龙(1994− ),男,甘肃静宁人,陆军工程大学硕士生,主要研究方向为网络安全、欺骗防御、软件定义网络
    张国敏(1979− ),男,江苏南京人,博士,陆军工程大学副教授,主要研究方向为软件定义网络、网络安全、网络测量和分布式系统
    邢长友(1982− ),男,江苏南京人,博士,陆军工程大学副教授,主要研究方向为网络安全、软件定义网络、网络度量和网络功能虚拟化
  • 基金资助:
    国家自然科学基金(61572521);武警工程大学科研创新团队科学基金(KYTD201805)

Research on deception defense techniques based on network characteristics obfuscation

Jinlong ZHAO, Guomin ZHANG, Changyou XING   

  1. Command &Control Engineering College, Army Engineering University, Nanjing 210001, China
  • Revised:2021-01-20 Online:2021-08-15 Published:2021-08-01
  • Supported by:
    The National Natural Science Foundation of China(61572521);The Scientific Foundation of the Scientific Research and Innovation Team of Engineering University of PAP(KYTD201805)

摘要:

网络攻击之前通常有侦查阶段,攻击者通过流量分析和主动扫描等技术获取目标系统的关键信息,从而制定有针对性的网络攻击。基于网络特征混淆的欺骗防御是一种有效的侦查对抗策略,该策略干扰攻击者在侦查阶段获取的信息,从而使攻击者发动无效的攻击。对现有混淆欺骗防御方案的技术原理进行了分析,给出了网络混淆欺骗的形式化定义,并从3个层次对现有的研究成果进行了讨论,最后分析了混淆欺骗防御技术的发展趋势。

关键词: 网络侦查防护, 拓扑混淆, 侦查欺骗, 欺骗防御

Abstract:

There is usually a reconnaissance stage before a network attack, the attacker obtains the key information of the target system through techniques such as traffic analysis and active scanning, to formulate a targeted network attack.Deception defense techniques based on network characteristics obfuscation is an effective strategy to confront network reconnaissance, which makes the attacker launch an ineffective attack by thwarting the attacker's reconnaissance stage.The technical principle of the existing obfuscation defense solutions was analyzed, the formal definition of network obfuscation was given, the existing research works were discussed from three aspects, and finally the development trend of the obfuscation deception defense technique were analyzed.

Key words: network reconnaissance protection, topology obfuscation, reconnaissance deception, deception defense

中图分类号: 

No Suggested Reading articles found!