HUSÁK, Martin, Nataliia NESHENKO, Morteza SAFAEI POUR, Elias BOU-HARB and Pavel ČELEDA. Assessing Internet-wide Cyber Situational Awareness of Critical Sectors. In Proceedings of the 13th International Conference on Availability, Reliability and Security. Hamburg: ACM, 2018. p. "29:1"-"29:6", 6 pp. ISBN 978-1-4503-6448-5. doi:10.1145/3230833.3230837.
Other formats:   BibTeX LaTeX RIS
Basic information
Original name Assessing Internet-wide Cyber Situational Awareness of Critical Sectors
Authors HUSÁK, Martin (203 Czech Republic, guarantor, belonging to the institution), Nataliia NESHENKO, Morteza SAFAEI POUR, Elias BOU-HARB and Pavel ČELEDA (203 Czech Republic, belonging to the institution).
Edition Hamburg, Proceedings of the 13th International Conference on Availability, Reliability and Security, p. "29:1"-"29:6", 6 pp. 2018.
Publisher ACM
Other information
Original language English
Type of outcome Proceedings paper
Field of Study 10200 1.2 Computer and information sciences
Confidentiality degree is not subject to a state or trade secret
Publication form electronic version available online
WWW URL
RIV identification code RIV/00216224:14610/18:00102646
Organization unit Institute of Computer Science
ISBN 978-1-4503-6448-5
Doi http://dx.doi.org/10.1145/3230833.3230837
UT WoS 000477981800057
Keywords in English network security; network scanning; DDoS; critical infrastructure
Tags rivok
Tags International impact, Reviewed
Changed by Changed by: Mgr. Alena Mokrá, učo 362754. Changed: 23. 4. 2020 12:14.
Abstract
In this short paper, we take a first step towards empirically assessing Internet-wide malicious activities generated from and targeted towards Internet-scale business sectors (i.e., financial, health, education, etc.) and critical infrastructure (i.e., utilities, manufacturing, government, etc.). Facilitated by an innovative and a collaborative large-scale effort, we have conducted discussions with numerous Internet entities to obtain rare and private information related to allocated IP blocks pertaining to the aforementioned sectors and critical infrastructure. To this end, we employ such information to attribute Internet-scale maliciousness to such sectors and realms, in an attempt to provide an in-depth analysis of the global cyber situational posture. We draw upon close to 16.8 TB of darknet data to infer probing activities (typically generated by malicious/infected hosts) and DDoS backscatter, from which we distill IP addresses of victims. By executing week-long measurements, we observed an alarming number of more than 11,000 probing machines and 300 DDoS attack victims hosted by critical sectors. We also generate rare insights related to the maliciousness of various business sectors, including financial, which typically do not report their hosted and targeted illicit activities for reputation-preservation purposes. While we treat the obtained results with strict confidence due to obvious sensitivity reasons, we postulate that such generated cyber threat intelligence could be shared with sector/critical infrastructure operators, backbone networks and Internet service providers to contribute to the overall threat remediation objective.
Links
EF16_019/0000822, research and development projectName: Centrum excelence pro kyberkriminalitu, kyberbezpečnost a ochranu kritických informačních infrastruktur
Type Name Uploaded/Created by Uploaded/Created Rights
2018-ARES-assessing-internet-wide-situational-awareness-paper.pdf   File version Husák, M. 14. 8. 2018

Properties

Address within IS
https://is.muni.cz/auth/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-paper.pdf
Address for the users outside IS
https://is.muni.cz/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-paper.pdf
Address within Manager
https://is.muni.cz/auth/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-paper.pdf?info
Address within Manager for the users outside IS
https://is.muni.cz/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-paper.pdf?info
Uploaded/Created
Tue 14. 8. 2018 15:27, RNDr. Martin Husák, Ph.D.

Rights

Right to read
  • anyone on the Internet
  • a concrete person doc. Ing. Pavel Čeleda, Ph.D., učo 206086
  • a concrete person RNDr. Martin Husák, Ph.D., učo 256631
  • a concrete person Mgr. Alena Mokrá, učo 362754
Right to upload
 
Right to administer:
  • a concrete person doc. Ing. Pavel Čeleda, Ph.D., učo 206086
  • a concrete person RNDr. Martin Husák, Ph.D., učo 256631
  • a concrete person Mgr. Alena Mokrá, učo 362754
Attributes
 

2018-ARES-assessing-internet-wide-situational-awareness-paper.pdf

Application
Open the file
Download file.
Address within IS
https://is.muni.cz/auth/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-paper.pdf
Address for the users outside IS
http://is.muni.cz/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-paper.pdf
File type
PDF (application/pdf)
Size
437 KB
Hash md5
e9a3f6e4e9c917bac4fecf5e9ee069fc
Uploaded/Created
Tue 14. 8. 2018 15:27

2018-ARES-assessing-internet-wide-situational-awareness-paper.txt

Application
Open the file
Download file.
Address within IS
https://is.muni.cz/auth/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-paper.txt
Address for the users outside IS
http://is.muni.cz/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-paper.txt
File type
plain text (text/plain)
Size
36,4 KB
Hash md5
4c96d9849e21bae60fa633aa23102b0c
Uploaded/Created
Tue 14. 8. 2018 15:36
2018-ARES-assessing-internet-wide-situational-awareness-slides.pdf  Husák, M. 30. 8. 2018

Properties

Address within IS
https://is.muni.cz/auth/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-slides.pdf
Address for the users outside IS
https://is.muni.cz/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-slides.pdf
Address within Manager
https://is.muni.cz/auth/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-slides.pdf?info
Address within Manager for the users outside IS
https://is.muni.cz/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-slides.pdf?info
Uploaded/Created
Thu 30. 8. 2018 16:34, RNDr. Martin Husák, Ph.D.

Rights

Right to read
  • anyone on the Internet
  • a concrete person doc. Ing. Pavel Čeleda, Ph.D., učo 206086
  • a concrete person RNDr. Martin Husák, Ph.D., učo 256631
  • a concrete person Mgr. Alena Mokrá, učo 362754
Right to upload
 
Right to administer:
  • a concrete person doc. Ing. Pavel Čeleda, Ph.D., učo 206086
  • a concrete person RNDr. Martin Husák, Ph.D., učo 256631
  • a concrete person Mgr. Alena Mokrá, učo 362754
Attributes
 

2018-ARES-assessing-internet-wide-situational-awareness-slides.pdf

Application
Open the file
Download file.
Address within IS
https://is.muni.cz/auth/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-slides.pdf
Address for the users outside IS
http://is.muni.cz/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-slides.pdf
File type
PDF (application/pdf)
Size
704,5 KB
Hash md5
9a706061de1682cc24e13629a964c01f
Uploaded/Created
Thu 30. 8. 2018 16:34

2018-ARES-assessing-internet-wide-situational-awareness-slides.txt

Application
Open the file
Download file.
Address within IS
https://is.muni.cz/auth/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-slides.txt
Address for the users outside IS
http://is.muni.cz/publication/1415859/2018-ARES-assessing-internet-wide-situational-awareness-slides.txt
File type
plain text (text/plain)
Size
5,8 KB
Hash md5
45cb613cfd2d317aeb485d56ee5b856c
Uploaded/Created
Thu 30. 8. 2018 16:36
Print
Report a file uploaded without authorization. Displayed: 25. 3. 2023 19:25