New Snort rule for detection and prevention of SMTP e-mail bomb attacks

Andrei-Daniel Tudosi, D. Balan, Alin Dan Potorac
{"title":"New Snort rule for detection and prevention of SMTP e-mail bomb attacks","authors":"Andrei-Daniel Tudosi, D. Balan, Alin Dan Potorac","doi":"10.1109/DAS54948.2022.9786213","DOIUrl":null,"url":null,"abstract":"Cyberattacks on networks are launched in every moment nowadays. Due to the advancement of digitalization and technology, these types of attacks are present in our lives, whether we are aware of them or not, they still exist. E-mail bomb attacks are listed as cyberattacks, which can create difficulties in the telecommunication sector because they target services that will be disrupted and be harder to access. In definition, an e-mail bomb involves the process of sending a large number of e-mails to a specific server or person. A very powerful open-source tool that can handle this situation is Snort [1], which is used as a solution to identify this network attack. Additionally, with Snort, this paper presents a custom rule proposed to show promising results in detecting this kind of attack.","PeriodicalId":245984,"journal":{"name":"2022 International Conference on Development and Application Systems (DAS)","volume":"2 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-05-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 International Conference on Development and Application Systems (DAS)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/DAS54948.2022.9786213","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1

Abstract

Cyberattacks on networks are launched in every moment nowadays. Due to the advancement of digitalization and technology, these types of attacks are present in our lives, whether we are aware of them or not, they still exist. E-mail bomb attacks are listed as cyberattacks, which can create difficulties in the telecommunication sector because they target services that will be disrupted and be harder to access. In definition, an e-mail bomb involves the process of sending a large number of e-mails to a specific server or person. A very powerful open-source tool that can handle this situation is Snort [1], which is used as a solution to identify this network attack. Additionally, with Snort, this paper presents a custom rule proposed to show promising results in detecting this kind of attack.
新的Snort规则用于检测和防止SMTP电子邮件炸弹攻击
如今,针对网络的网络攻击每时每刻都在发生。由于数字化和技术的进步,这些类型的攻击存在于我们的生活中,无论我们是否意识到它们,它们仍然存在。电子邮件炸弹攻击被列为网络攻击,这可能会给电信行业带来困难,因为它们针对的是那些将被中断、更难接入的服务。从定义上讲,电子邮件炸弹是指向特定服务器或个人发送大量电子邮件的过程。可以处理这种情况的一个非常强大的开源工具是Snort[1],它被用作识别这种网络攻击的解决方案。此外,对于Snort,本文提出了一个自定义规则,以显示检测此类攻击的良好结果。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信