|
ABSTRACT
This paper considers the problem of an attacker disrupting an encrypted victim wireless ad hoc network through jamming. Jamming is broken down into layers and this paper focuses on jamming at the Transport/Network layer. Jamming at this layer exploits AODV and TCP protocols and is shown to be very effective in simulated and real networks when it can sense victim packet types, but the encryption is assumed to mask the entire header and contents of the packet so that only packet size, timing, and sequence is available to the attacker for sensing. A sensor is developed and tested on live data. The classification is found to be highly reliable for many packet types. The relative roles of size, timing, and sequence are discussed along with the implications for making networks more secure.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
The Apache HTTP Server Project, release 2.0, downloaded Sep. 2004. http://httpd.apache.org/
|
| |
2
|
APE Project, How to build, install and run the APE testbed, Uppsala University, Nov. 8, 2002 http://apetestbed.sourceforge.net/ape-testbed.pdf
|
| |
3
|
Bellardo, J., Savage, S., 802.11 denial-of-service attacks: real vulenerabilities and practical solutions, USENIX Security Symposium, 2003.
|
| |
4
|
|
| |
5
|
Bissias, G.D., Liberatore, M., Jensen, D., Levine, B.N., Privacy vulnerabilities in encrypted HTTP streams, In Proc. Privacy Enhancing Technologies Workshop (PET 2005).
|
| |
6
|
Click Modular Router Project, MIT, release 1.4.3, downloaded Dec. 2004 http://pdos.csail.mit.edu/click/
|
| |
7
|
|
| |
8
|
Gupta, V., Krishnamurthy, S., Faloutsos, M. Denial of service attacks at the MAC layer in wireless ad hoc networks. In Proc. of Milcom, 2002.
|
| |
9
|
|
| |
10
|
Joncheray, L. A simple active attack against TCP. In Proc. Fifth Usenix UNIX Security Symposium, 1995
|
| |
11
|
Landeta, D., Secure Wireless LAN SecNet 11 & SecNet 54, in Information Assurance Solutions Working Symposium, Aug. 2005. See also, http://www.govcomm.harris.com/secure-comm/
|
| |
12
|
Linux, The linux homepage, the 2.4.27 kernel, downloaded Nov. 2005, http://www.linux.org
|
| |
13
|
Microsoft Corporation, Microsoft Windows XP Home Edition Version 2002 Service Pack 2.
|
| |
14
|
Negi, R., Perrig, A. Jamming analysis of MAC protocols. Carnegie Mellon Technical Memo, 2003.
|
| |
15
|
Perkins, C., Royer, E., Das, S., Ad hoc on-demand distance vector (AODV) routing, Internet Draft, draft-ietf-manet-aodv-11.txt, work in progress, Aug 2002.
|
| |
16
|
Jean-François Raymond, Traffic analysis: protocols, attacks, design issues, and open problems, International workshop on Designing privacy enhancing technologies: design issues in anonymity and unobservability, p.10-29, January 2001, Berkeley, California, United States
|
| |
17
|
Stahlberg, M.. Radio jamming attacks against two popular mobile networks. In H. Lipmaa and H. Pehu-Lehtonen, ed., Proc. of the Helsinki University of Technology Seminar on Network Security. Fall 2000.
|
| |
18
|
Stallings, W., Wireless Communications and Networks, 2nd Ed., Prentice Hall, 2005.
|
| |
19
|
Qixiang Sun , Daniel R. Simon , Yi-Min Wang , Wilf Russell , Venkata N. Padmanabhan , Lili Qiu, Statistical Identification of Encrypted Web Browsing Traffic, Proceedings of the 2002 IEEE Symposium on Security and Privacy, p.19, May 12-15, 2002
|
| |
20
|
Uppsala University, The AODV-UU implementation , version 0.8.1, downloaded Nov. 2005 http://core.it.uu.se/AdHoc/AodvUUImpl
|
| |
21
|
Uppsala University, The Ad hoc Protocol Evaluation (APE) testbed, release 0.3, downloaded Nov. 2005 http://apetestbed.sourceforge.net
|
 |
22
|
|
| |
23
|
Wright, C.V., Monrose, F., Masson, G.M., Towards better protocol identification using profile HMMs, JHU Technical Report JHU-SPAR051201, 14p., June, 2005.
|
|