6 papers
BEACON: Automatic Container Policy Generation using Environment-aware Dynamic Analysis
Haney Kang, Eduard Marin, Myoungsung You +3
This paper introduces BeaCon, a novel tool for the automated generation of adjustable container security policies. Unlike prior approaches, BeaCon leverages dynamic analysis to sim…
SecTracer: A Framework for Uncovering the Root Causes of Network Intrusions via Security Provenance
Seunghyeon Lee, Hyunmin Seo, Hwanjo Heo +3
Modern enterprise networks comprise diverse and heterogeneous systems that support a wide range of services, making it challenging for administrators to track and analyze sophistic…
CryptoGuard: Lightweight Hybrid Detection and Response to Host-based Cryptojackers in Linux Cloud Environments
Gyeonghoon Park, Jaehan Kim, Jinu Choi +1
Host-based cryptomining malware, commonly known as cryptojackers, have gained notoriety for their stealth and the significant financial losses they cause in Linux-based cloud envir…
Heimdallr: Fingerprinting SD-WAN Control-Plane Architecture via Encrypted Control Traffic
Minjae Seo, Jaehan Kim, Eduard Marin +5
Software-defined wide area network (SD-WAN) has emerged as a new paradigm for steering a large-scale network flexibly by adopting distributed software-defined network (SDN) control…
PassREfinder-FL: Privacy-Preserving Credential Stuffing Risk Prediction via Graph-Based Federated Learning for Representing Password Reuse between Websites
Jaehan Kim, Minkyoo Song, Minjae Seo +3
Credential stuffing attacks have caused significant harm to online users who frequently reuse passwords across multiple websites. While prior research has attempted to detect users…
Ambusher: Exploring the Security of Distributed SDN Controllers Through Protocol State Fuzzing
Jinwoo Kim, Minjae Seo, Eduard Marin +3
Distributed SDN (Software-Defined Networking) controllers have rapidly become an integral element of Wide Area Networks (WAN), particularly within SD-WAN, providing scalability and…