Real-Time Detection of Storage Covert Channels

Public Deposited
Resource Type
Creator
Abstract
  • Covert channnels are a class of techniques for hiding the presence of communication between parties. In the context of cybersecurity, covert channels can be used by attackers to evade detection and to exfiltrate sensitive data. In so doing, they create a need for effective detection techniques for the use of covert channels. In this thesis, we present the conception, design and implementation of a system for detecting covert messages stored in the headers of network protocols in real time. We start by identifying statistical tests that can distinguish network traffic containing certain types of covert channels with high accuracy. We then leverage that information to build a system that analyses network traffic by tapping ethernet cables in order to detect the use of covert channels with very low latency.

Subject
Language
Publisher
Thesis Degree Level
Thesis Degree Name
Thesis Degree Discipline
Identifier
Rights Notes
  • Copyright © 2021 the author(s). Theses may be used for non-commercial research, educational, or related academic purposes only. Such uses include personal study, research, scholarship, and teaching. Theses may only be shared by linking to Carleton University Institutional Repository and no part may be used without proper attribution to the author. No part may be used for commercial purposes directly or indirectly via a for-profit platform; no adaptation or derivative works are permitted without consent from the copyright owner.

Date Created
  • 2021

Relations

In Collection:

Items