Active and Passive Collection of SSH Key Material for Cyber Threat Intelligence


연구 분야: Safety



학회: Digital Threats: Research and Practice (DTRAP), Volume 3, Issue 3


초록

This article describes a system for storing historical forensic artifacts collected from SSH connections. This system exposes a REST API in a similar fashion as passive DNS databases, malware hash registries, and SSL notaries with the goal of supporting incident investigations and monitoring of infrastructure.


Author Profile
Alexandre Dulaunoy

CIRCL Luxembourg Luxembourg

Luxembourg
Author Profile
Jean Louis Huynen

CIRCL Luxembourg Luxembourg

Luxembourg
Author Profile
Aurelien Thirion

CIRCL Luxembourg Luxembourg

Luxembourg

📄 논문 정보

발행 연도 2022년
인용수 2
출판 국가 Luxembourg
사이트 ACM
좋아요 수 0

연관 논문 목록 (351건)