Font Size: a A A

Research On Network Attack Simulator And Its Key Technologies

Posted on:2012-06-18Degree:MasterType:Thesis
Country:ChinaCandidate:W C DouFull Text:PDF
GTID:2178330338451642Subject:Computer application technology
Abstract/Summary:
As Internet penetration rate gets higher and higher, it becomes an indispensable part in people's living and working, people use the Internet to store and dispatch information or to make interpersonal communication. However, the complicated network environment has caused more and more incidents of network attack on governments, army, universities and other national key industries and sectors. The problem of network security has been promoted to a high level of national security.The development of network attack simulation system is an important part for Attack Resistance Test (ART). It is a reverse security testing for discovering vulnerabilities in target network by making network attack simulation against network equipment, server, host computer, earlier than the real network attacks. Moreover, for the diversity of network attack methods, vulnerabilities in systems and programs have constantly been discovered, and the continual emergence of new attacks, it is crucial for security testing and evaluation. One of the most important ways for simulating network attacks is to classify existing network attacks by studying the structure of various attack packets, network protocols and the purpose of attacks.Through analysis of various network attacks, this article proposed a classification method for network attacks which is attack procedure oriented, named attack classification method based on state. On the basis of this method, we use RTT (Round-Trip Time) to control attack schedule of stateful attacks, developed a modular simulation system of network attacks, designed interfaces of network attack simulator and strategy editing tool, described 82 attack samples using XML language, realized stateful attacks using Socket programming and stateless attacks using Jpcap tool according to the difference between them, finally is the specific network attack simulation experiments.Network attack simulation results showed that one type of DoS (Denial of Service) attack called SYN Flood aimed at TCP port 139 on target system, causing almost 100% CPU utilization of target system, the implementation of ARP spoofing lead target system off the network, network attack simulation system has a good attack effect. Through modifying the XML documents of test case to generate new test case for fuzz testing and multiple SQL statements description, provided a reference for fuzz testing and simple SQL injection attack, network attack simulation system has good scalability.
Keywords/Search Tags:Attack Simulation, Attack Resistance Test, Jpcap, XML
Related items