Skip to Main Content (Press Enter)

Logo CNR
  • ×
  • Home
  • People
  • Outputs
  • Organizations
  • Expertise & Skills

UNI-FIND
Logo CNR

|

UNI-FIND

cnr.it
  • ×
  • Home
  • People
  • Outputs
  • Organizations
  • Expertise & Skills
  1. Outputs

You Can't Do That On Protocols Anymore: Analysis of Covert Channels in IETF Standards

Academic Article
Publication Date:
2024
abstract:
Information hiding techniques are used by threat actors to elude countermeasures and prevent reversing the attack chain. Recently, they have been deployed to create covert channels, i.e., parasitic communications paths cloaked in network traffic and digital objects. Unfortunately, their detection and mitigation are not simple tasks, especially when information is hidden in network protocols. For instance, revealing the presence of additional data is context-dependent and sanitization could partially impair the traffic. In this paper, we analyze the work of the IETF to evaluate whether risks arising from the presence of covert channels have been considered during the standardization phase. Our findings indicate that the exposure to hidden communications has been addressed only occasionally. We then provide some guidelines to improve the standardization of new protocols and services, especially to prevent the need of deploying a-posteriori fixes.
Iris type:
01.01 Articolo in rivista
Keywords:
covert channels; information hiding; protocols; IETF; standards; network security
List of contributors:
Caviglione, Luca
Authors of the University:
CAVIGLIONE LUCA
Handle:
https://iris.cnr.it/handle/20.500.14243/450512
  • Overview

Overview

URL

https://ieeexplore.ieee.org/document/10387512
  • Use of cookies

Powered by VIVO | Designed by Cineca | 26.5.0.0 | Sorgente dati: PREPROD (Ribaltamento disabilitato)