03.04.2013 Views

The menace came from below - Hack.lu

The menace came from below - Hack.lu

The menace came from below - Hack.lu

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Attack on nDPI<br />

Test used<br />

Injection of packet with HTTP header during capture with opensvp<br />

opensvp -q 0 -i eth0 -n<br />

SMTP traffic is targeted by the attack<br />

A pcap is captured with and without opensvp running<br />

Result of analysis with nDPI pcap reader<br />

Plain pcap analysis<br />

unknown: 7 packets<br />

Mail_SMTP: 8 packets<br />

Pcap with attack<br />

unknown: 17 packets<br />

Éric Leblond, Victor Julien (OISF) <strong>The</strong> <strong>menace</strong> <strong>came</strong> <strong>from</strong> <strong>below</strong> <strong>Hack</strong>.<strong>lu</strong> 2012 57 / 66

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!