Please use this identifier to cite or link to this item:
https://dspace.iiti.ac.in/handle/123456789/4574
Full metadata record
| DC Field | Value | Language |
|---|---|---|
| dc.contributor.author | Hubballi, Neminath | en_US |
| dc.contributor.author | Tiwari, Namrata | en_US |
| dc.contributor.author | Khandait, Pratibha | en_US |
| dc.date.accessioned | 2022-03-17T01:00:00Z | - |
| dc.date.accessioned | 2022-03-17T15:34:52Z | - |
| dc.date.available | 2022-03-17T01:00:00Z | - |
| dc.date.available | 2022-03-17T15:34:52Z | - |
| dc.date.issued | 2020 | - |
| dc.identifier.citation | Hubballi, N., Tiwari, N., & Khandait, P. (2020). POSTER: Distributed SSH bruteforce attack detection with flow content similarity and login failure reputation. Paper presented at the Proceedings of the 15th ACM Asia Conference on Computer and Communications Security, ASIA CCS 2020, 916-918. doi:10.1145/3320269.3405443 | en_US |
| dc.identifier.isbn | 9781450367509 | - |
| dc.identifier.other | EID(2-s2.0-85096400002) | - |
| dc.identifier.uri | https://doi.org/10.1145/3320269.3405443 | - |
| dc.identifier.uri | https://dspace.iiti.ac.in/handle/123456789/4574 | - |
| dc.description.abstract | In this paper we propose a method to detect distributed bruteforcing by modeling failed login attempts as a Poisson probability distribution. We use content similarity between known SSH connection and flow characteristics of failed login attempts to attribute a flow to SSH application and subsequently either as failure or success. Using the failed login count in a window time, we label window as either normal or containing bruteforce attempts. © 2020 Owner/Author. | en_US |
| dc.language.iso | en | en_US |
| dc.publisher | Association for Computing Machinery, Inc | en_US |
| dc.source | Proceedings of the 15th ACM Asia Conference on Computer and Communications Security, ASIA CCS 2020 | en_US |
| dc.subject | Computer science | en_US |
| dc.subject | Computers | en_US |
| dc.subject | Brute-force attack | en_US |
| dc.subject | Content similarity | en_US |
| dc.subject | Flow charac-teristics | en_US |
| dc.subject | SSH connections | en_US |
| dc.subject | Poisson distribution | en_US |
| dc.title | POSTER: Distributed SSH Bruteforce Attack Detection with Flow Content Similarity and Login Failure Reputation | en_US |
| dc.type | Conference Paper | en_US |
| Appears in Collections: | Department of Computer Science and Engineering | |
Files in This Item:
There are no files associated with this item.
Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.
Altmetric Badge: