Windows Firewall Bypassing Techniques: An Overview of HTTP Tunneling and Nmap Evasion

Autor: A. Marion Adebiyi, B. Francis Osang, A. Adebiyi Ayodele, O. Igbekele Emmanuel
Rok vydání: 2021
Předmět:
Zdroj: Computational Science and Its Applications – ICCSA 2021 ISBN: 9783030870126
ICCSA (9)
DOI: 10.1007/978-3-030-87013-3_41
Popis: Internet technology has brought about significant improvement in economical drive thereby making automated processes the new norm. With this new technological drive comes the upsurge in criminal activities as technology has proved to be a densely crime-perpetrated territory. Operating Systems (OS) have had their fair share of this debacle with significant updates being pushed out regularly to mitigate threats. Particularly, the windows OS has the firewall feature which has been a huge success in Intrusion Prevention and Detection systems. The Windows 10 version of the OS will always have significant patches and updates regularly to mitigate security threats. However, there have been several techniques and experiments that proves that firewalls are not sufficient enough for system protection. Advanced techniques in firewall evasions are new generation firewall mechanisms with a combination of techniques usually used to bypass standard security tools, such as intrusion detection and prevention systems, which might detect a protection mechanism. This singular fact that the use of multiple combinations of simpler components is possible, hundreds of thousands of potential Advanced Evasion Techniques exists. This paper therefore takes an overview two of the most significant techniques when it comes to bypassing firewalls - HTTP Tunneling and Nmap Evasion. A comparative study of both techniques helps us look at their similarities and differences and future works.
Databáze: OpenAIRE