[go: up one dir, main page]

WO2008084725A1 - 不正アクセス情報収集システム - Google Patents

不正アクセス情報収集システム Download PDF

Info

Publication number
WO2008084725A1
WO2008084725A1 PCT/JP2007/075213 JP2007075213W WO2008084725A1 WO 2008084725 A1 WO2008084725 A1 WO 2008084725A1 JP 2007075213 W JP2007075213 W JP 2007075213W WO 2008084725 A1 WO2008084725 A1 WO 2008084725A1
Authority
WO
WIPO (PCT)
Prior art keywords
access information
unauthorized access
honeynet
honeypots
address
Prior art date
Application number
PCT/JP2007/075213
Other languages
English (en)
French (fr)
Inventor
Koei Suzuki
Shunsuke Baba
Original Assignee
Yokogawa Electric Corporation
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Yokogawa Electric Corporation filed Critical Yokogawa Electric Corporation
Priority to CN2007800497544A priority Critical patent/CN101578827B/zh
Priority to US12/522,653 priority patent/US8331251B2/en
Publication of WO2008084725A1 publication Critical patent/WO2008084725A1/ja

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1408Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic by monitoring network traffic
    • H04L63/1425Traffic logging, e.g. anomaly detection
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1441Countermeasures against malicious traffic
    • H04L63/1491Countermeasures against malicious traffic using deception as countermeasure, e.g. honeypots, honeynets, decoys or entrapment
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/09Mapping addresses
    • H04L61/25Mapping addresses of the same type
    • H04L61/2503Translation of Internet protocol [IP] addresses
    • H04L61/2514Translation of Internet protocol [IP] addresses between local and global IP addresses
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1441Countermeasures against malicious traffic

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Computer And Data Communications (AREA)

Abstract

 広範囲のアドレス空間の不正アクセス情報を低コストで収集可能で動作解析が容易な不正アクセス情報収集システムを実現する。  ハニーネットへの不正アクセスを監視して不正アクセス情報を収集する不正アクセス情報収集システムにおいて、プライベートアドレス或いはグローバルアドレスがそれぞれ設定されハニーネットを構成する複数のハニーポットと、インターネットとハニーネットとの間に設けられ、ルーティングテーブルの設定によってプライベートアドレス或いはグローバルアドレスに対して複数のグローバルアドレスを割り当てて受信したパケットを転送し、通信制御リストに基づきハニーネット側からインターネット側への通信制御を行うと共に通過するパケットを記録する不正アクセス情報収集装置とを設ける。
PCT/JP2007/075213 2007-01-12 2007-12-27 不正アクセス情報収集システム WO2008084725A1 (ja)

Priority Applications (2)

Application Number Priority Date Filing Date Title
CN2007800497544A CN101578827B (zh) 2007-01-12 2007-12-27 未授权访问信息收集系统
US12/522,653 US8331251B2 (en) 2007-01-12 2007-12-27 Unauthorized access information collection system

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
JP2007004038A JP4780413B2 (ja) 2007-01-12 2007-01-12 不正アクセス情報収集システム
JP2007-004038 2007-01-12

Publications (1)

Publication Number Publication Date
WO2008084725A1 true WO2008084725A1 (ja) 2008-07-17

Family

ID=39608619

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/JP2007/075213 WO2008084725A1 (ja) 2007-01-12 2007-12-27 不正アクセス情報収集システム

Country Status (4)

Country Link
US (1) US8331251B2 (ja)
JP (1) JP4780413B2 (ja)
CN (1) CN101578827B (ja)
WO (1) WO2008084725A1 (ja)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101582907B (zh) * 2009-06-24 2012-07-04 成都市华为赛门铁克科技有限公司 一种增强蜜网诱骗力度的方法和蜜网系统
US20220214858A1 (en) * 2021-01-04 2022-07-07 International Business Machines Corporation Controlling sounds of individual objects in a video

Families Citing this family (16)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8291024B1 (en) * 2008-07-31 2012-10-16 Trend Micro Incorporated Statistical spamming behavior analysis on mail clusters
JP2010198386A (ja) * 2009-02-25 2010-09-09 Nippon Telegr & Teleph Corp <Ntt> 不正アクセス監視システムおよび不正アクセス監視方法
US7917655B1 (en) * 2009-10-23 2011-03-29 Symantec Corporation Method and system for employing phone number analysis to detect and prevent spam and e-mail scams
US7917593B1 (en) * 2009-10-23 2011-03-29 Symantec Corporation Method and system for employing automatic reply systems to detect e-mail scammer IP addresses
US8752174B2 (en) 2010-12-27 2014-06-10 Avaya Inc. System and method for VoIP honeypot for converged VoIP services
US8824437B2 (en) * 2011-03-02 2014-09-02 Ricoh Company, Ltd. Wireless communications device, electronic apparatus, and methods for determining and updating access point
US8782614B2 (en) * 2011-04-08 2014-07-15 Ca, Inc. Visualization of JVM and cross-JVM call stacks
US10713356B2 (en) * 2013-03-04 2020-07-14 Crowdstrike, Inc. Deception-based responses to security attacks
US8761181B1 (en) * 2013-04-19 2014-06-24 Cubic Corporation Packet sequence number tracking for duplicate packet detection
US10491628B2 (en) 2014-09-17 2019-11-26 Mitsubishi Electric Corporation Attack observation apparatus and attack observation method
US9954896B2 (en) * 2015-04-29 2018-04-24 Rapid7, Inc. Preconfigured honey net
US10796010B2 (en) * 2017-08-30 2020-10-06 MyMedicalImages.com, LLC Cloud-based image access systems and methods
JP7000863B2 (ja) 2018-01-04 2022-01-19 富士通株式会社 マルウェア検査支援プログラム、マルウェア検査支援方法および通信装置
JP7060800B2 (ja) * 2018-06-04 2022-04-27 日本電信電話株式会社 感染拡大攻撃検知システム及び方法、並びに、プログラム
US11032318B2 (en) * 2018-08-06 2021-06-08 Juniper Networks, Inc. Network monitoring based on distribution of false account credentials
JP7107153B2 (ja) 2018-10-17 2022-07-27 富士通株式会社 マルウェア検査支援プログラム、マルウェア検査支援方法および通信装置

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2002318739A (ja) * 2001-02-14 2002-10-31 Mitsubishi Electric Corp 不正侵入データ対策処理装置、不正侵入データ対策処理方法及び不正侵入データ対策処理システム
JP2003264595A (ja) * 2002-03-08 2003-09-19 Mitsubishi Electric Corp パケット中継装置、パケット中継システムおよびオトリ誘導システム
JP2004304752A (ja) * 2002-08-20 2004-10-28 Nec Corp 攻撃防御システムおよび攻撃防御方法
JP2006222662A (ja) * 2005-02-09 2006-08-24 Oki Techno Creation:Kk 不正アクセス防止システム、不正アクセス防止方法、および不正アクセス防止プログラム

Family Cites Families (34)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5805196A (en) * 1994-09-09 1998-09-08 Konica Corporation Apparatus for recording a color image on a color photogaphic material based on three color component image signals separated from the color image
EP0895684B1 (en) * 1996-04-24 2001-11-14 Nortel Networks Limited Internet protocol filter
JPH11122301A (ja) * 1997-10-20 1999-04-30 Fujitsu Ltd アドレス変換接続装置
JP3465620B2 (ja) * 1999-03-17 2003-11-10 日本電気株式会社 仮想私設網構築システム
GB2349244A (en) * 1999-04-22 2000-10-25 Visage Developments Limited Providing network access to restricted resources
US7117532B1 (en) * 1999-07-14 2006-10-03 Symantec Corporation System and method for generating fictitious content for a computer
US6892245B1 (en) * 2000-09-22 2005-05-10 Nortel Networks Limited Management information base for a multi-domain network address translator
JP3687782B2 (ja) 2000-09-29 2005-08-24 Kddi株式会社 不正侵入防止システム
DE60121133T2 (de) * 2001-02-14 2007-02-01 Mitsubishi Denki K.K. Verfahren und Vorrichtung zur Behandlung von unerlaubten Zugriffsdaten
US7406526B2 (en) * 2001-09-28 2008-07-29 Uri Benchetrit Extended internet protocol network address translation system
US7136385B2 (en) * 2001-12-07 2006-11-14 International Business Machines Corporation Method and system for performing asymmetric address translation
US20030154306A1 (en) * 2002-02-11 2003-08-14 Perry Stephen Hastings System and method to proxy inbound connections to privately addressed hosts
JP3776821B2 (ja) * 2002-03-28 2006-05-17 富士通株式会社 アドレスアクセスシステム及び方法
US6961809B2 (en) * 2002-06-04 2005-11-01 Riverstone Networks, Inc. Managing a position-dependent data set that is stored in a content addressable memory array at a network node
KR100876780B1 (ko) * 2002-06-05 2009-01-07 삼성전자주식회사 로컬 네트워크를 위한 인터넷 액세스 게이트웨이에서네트워크 어드레스 변환 없이 단일의 인터넷 프로토콜어드레스를 공유하기 위한 방법 및 장치
US7143137B2 (en) * 2002-06-13 2006-11-28 Nvidia Corporation Method and apparatus for security protocol and address translation integration
US7716725B2 (en) * 2002-09-20 2010-05-11 Fortinet, Inc. Firewall interface configuration and processes to enable bi-directional VoIP traversal communications
TWI222811B (en) * 2002-11-19 2004-10-21 Inst Information Industry NAPT gateway system and method to expand the number of connections
US20040139226A1 (en) * 2002-12-13 2004-07-15 Dany Margalit Method for assigning an IP address to a network connectable device
TWI263425B (en) * 2003-01-14 2006-10-01 Admtek Inc Router and packet transmission method
JP2004234401A (ja) 2003-01-31 2004-08-19 Hitachi Ltd セキュリティ診断情報収集システム及びセキュリティ診断システム
KR101030864B1 (ko) * 2003-09-11 2011-04-22 파나소닉 주식회사 시각 처리 장치, 시각 처리 방법, 시각 처리 프로그램, 집적 회로, 표시 장치, 촬영 장치 및 휴대 정보 단말
JP4376711B2 (ja) 2004-07-09 2009-12-02 富士通株式会社 アクセス管理方法及びその装置
US7657735B2 (en) * 2004-08-19 2010-02-02 At&T Corp System and method for monitoring network traffic
JP2006099590A (ja) 2004-09-30 2006-04-13 Oki Electric Ind Co Ltd アクセス制御装置、アクセス制御方法およびアクセス制御プログラム
TWI250751B (en) * 2004-10-01 2006-03-01 Realtek Semiconductor Corp Apparatus and method for IP allocation
JP4479459B2 (ja) * 2004-10-19 2010-06-09 横河電機株式会社 パケット解析システム
JP2006243878A (ja) 2005-03-01 2006-09-14 Matsushita Electric Ind Co Ltd 不正アクセス検知システム
US7636944B2 (en) * 2005-10-28 2009-12-22 Hewlett-Packard Development Company, L.P. Method and apparatus for detecting and responding to email based propagation of malicious software in a trusted network
US20070165632A1 (en) * 2006-01-13 2007-07-19 Cisco Technology, Inc. Method of providing a rendezvous point
JP4682912B2 (ja) * 2006-05-08 2011-05-11 株式会社日立製作所 センサネットシステム、センサネット位置特定プログラム
US7890612B2 (en) * 2006-05-08 2011-02-15 Electro Guard Corp. Method and apparatus for regulating data flow between a communications device and a network
WO2007143011A2 (en) * 2006-05-31 2007-12-13 The Trustees Of Columbia University In The City Ofnew York Systems, methods, and media for generating bait information for trap-based defenses
ATE493833T1 (de) * 2006-10-31 2011-01-15 Ericsson Telefon Ab L M Verfahren und vorrichtung zum ip-netzwerk- interfacing

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2002318739A (ja) * 2001-02-14 2002-10-31 Mitsubishi Electric Corp 不正侵入データ対策処理装置、不正侵入データ対策処理方法及び不正侵入データ対策処理システム
JP2003264595A (ja) * 2002-03-08 2003-09-19 Mitsubishi Electric Corp パケット中継装置、パケット中継システムおよびオトリ誘導システム
JP2004304752A (ja) * 2002-08-20 2004-10-28 Nec Corp 攻撃防御システムおよび攻撃防御方法
JP2006222662A (ja) * 2005-02-09 2006-08-24 Oki Techno Creation:Kk 不正アクセス防止システム、不正アクセス防止方法、および不正アクセス防止プログラム

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101582907B (zh) * 2009-06-24 2012-07-04 成都市华为赛门铁克科技有限公司 一种增强蜜网诱骗力度的方法和蜜网系统
US20220214858A1 (en) * 2021-01-04 2022-07-07 International Business Machines Corporation Controlling sounds of individual objects in a video
US11513762B2 (en) * 2021-01-04 2022-11-29 International Business Machines Corporation Controlling sounds of individual objects in a video

Also Published As

Publication number Publication date
CN101578827A (zh) 2009-11-11
US8331251B2 (en) 2012-12-11
US20100118717A1 (en) 2010-05-13
JP2008172548A (ja) 2008-07-24
CN101578827B (zh) 2013-05-29
JP4780413B2 (ja) 2011-09-28

Similar Documents

Publication Publication Date Title
WO2008084725A1 (ja) 不正アクセス情報収集システム
WO2009045925A3 (en) Methods and apparatus for managing addresses related to virtual partitions of a session exchange device
WO2006028674A3 (en) A system and method for sharing an ip address
DK1844587T3 (da) Talekanalstyring ved trådløs datapakkekommunikation
AU2003259554A1 (en) Network terminal device, address management server, communication system, and network communication method using mac addresses to determine the ip target addresses
WO2007146393A3 (en) A wireless network that provides location information when queried by a client device
ATE502344T1 (de) Internetprotokollbasiertes telemetrie- patientenüberwachungssystem
WO2007082016A3 (en) Control system with wireless address domain to field device address domain translation
IL208053A (en) Method and apparatus for communication of data packets between local networks
GB2430849A (en) IP Device Management Server and Network System
WO2014115157A8 (en) Address resolution in software-defined networks
WO2006052371A3 (en) Translating medium access control addresses
MX2012007559A (es) Capa 2 virtual y mecanismo para hacerla escalable.
ATE524913T1 (de) Netzwerkadressenübersetzung ankommender sip verbindungen
WO2007143717A3 (en) Methods, computer readable medium and apparatus for using short addresses in a communication system
WO2007100641A3 (en) Communication using private ip addresses of local networks
WO2009015015A3 (en) Multiple packet data network support over trusted access
WO2009067443A3 (en) Geographic trunk groups
ATE508554T1 (de) Drahtloser multicast-proxy
WO2006044685A3 (en) Apparatus and method for firewall traversal
WO2013052898A3 (en) Systems and methods for data packet processing of ip fragments using network address translation functionality
JP2012503388A5 (ja)
WO2011097179A3 (en) Method and apparatus for detecting devices on a local area network
WO2006074022A3 (en) A multicast architecture for wireless mesh networks
WO2014036382A3 (en) Byte caching in wireless communication networks

Legal Events

Date Code Title Description
WWE Wipo information: entry into national phase

Ref document number: 200780049754.4

Country of ref document: CN

121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 07860434

Country of ref document: EP

Kind code of ref document: A1

WWE Wipo information: entry into national phase

Ref document number: 12522653

Country of ref document: US

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 07860434

Country of ref document: EP

Kind code of ref document: A1