Network security research

Sort by:
Articles, softwares and blog posts related to network security
network security
Using Strategy Objectives for Network Security Analysis
We introduce the notion of "strategy objectives" that mixes logical constraints and numerical one. Using strategy objectives allows to perform a new range of analysis, such as evaluate what is the least costly defense, that traditional attacks graphs system are unable to perform. Strategy objectives are implemented in NetQi.
@Inscrypt 2009
medias:2
formal methods
NetQi A Model checker for Anticipation Game
NetQi is a free and open-source model-checker that implements the anticipation game logic framework, a variant of timed game. NetQi was designed to analyze all kind of network evolutions. In particular it is well suited to analyze network attacks and intrusions.
@ATVA 2008
medias:2
formal methods
Extending Anticipation Games with Location Penalty and Timeline
We present a three-fold extension to the anticipation-game framework designed to model network cooperation, the cost of attacks based on its duration and the introduction of new vector of attacks over time.
@FAST 2008
medias:2
network security
Probabilistic Protocol Identification for Hard to Classify Protocol
[Best Paper Award] We show that NetAnalyzer is able to detect obfuscated protocols (i.e Bit torrent) by combining a payload analysis with a classifier based on several discriminators, including packet entropy and size. We also detail how netAnalyzer deals with tunneled session and covert channel.
@WISTP 2008
medias:2
formal methods
A Logical Framework for Evaluating Network Resilience Against Faults and Attacks
The anticipation-games are a logic-based framework designed to evaluate the resilience of networks against attacks. What set anticipation-games from standard attack graphs is that it allows to model the dynamic nature of the attack and to take into account how the administrator respond to attacks .
@ASIAN 2007
medias:2
network security
Time has something to tell us about network address translation
We present a new technique to count the number of host behind a NAT. This technique based on TCP timestamp option, works with Linux and OSX system which make it complementary to the previous one based on IPID that only works against Windows hosts.
@NordSec 2007
medias:2
formal methods
NetQi
Netqi is a model checker for the anticipation game framework.
2007
medias:2
network security
NetAnalyzer
NetAnalyzer is a multi-threaded statefull passive network analyzer.
2006
medias:2
About me
Researcher at Google, specializing in Internet security and privacy.
Latest blog posts
Latest social News