Detecting Parallel Covert Data Transmission Channels in Video Conferencing Using Machine Learning

التفاصيل البيبلوغرافية
العنوان: Detecting Parallel Covert Data Transmission Channels in Video Conferencing Using Machine Learning
المؤلفون: Chen Hajaj, Avshalom Elmalech, Ofir Joseph
المصدر: Electronics
Volume 12
Issue 5
Pages: 1091
بيانات النشر: Multidisciplinary Digital Publishing Institute, 2023.
سنة النشر: 2023
مصطلحات موضوعية: privacy and content protection, AI/ML for communication and networking, machine learning, hole punching, cybersecurity, Computer Networks and Communications, Hardware and Architecture, Control and Systems Engineering, Signal Processing, covert channels, security, Electrical and Electronic Engineering
الوصف: Covert communication channels are a concept in which a policy-breaking method is used in order to covertly transmit data from inside an organization to an external or accessible point. VoIP and Video systems are exposed to such attacks on different layers, such as the underlying real-time transport protocol (RTP) which uses Transmission Control Protocol (TCP) or User Datagram Protocol (UDP) packet streams to punch a hole through Network address translation (NAT). This paper presents different innovative attack methods utilizing covert communication and RTP channels to spread malware or to create a data leak channel between different organizations. The demonstrated attacks are based on a UDP punch hole created using Skype peer-to-peer video conferencing communication. The different attack methods were successfully able to transmit a small text file in an undetectable manner by observing the communication channel, and without causing interruption to the audio/video channels or creating a noticeable disturbance to the quality. While these attacks are hard to detect by the eye, we show that applying classical Machine Learning algorithms to detect these covert channels on statistical features sampled from the communication channel is effective for one type of attack.
وصف الملف: application/pdf
اللغة: English
تدمد: 2079-9292
DOI: 10.3390/electronics12051091
URL الوصول: https://explore.openaire.eu/search/publication?articleId=doi_dedup___::8a3c71584272e9a807e4393acdac071d
حقوق: OPEN
رقم الأكسشن: edsair.doi.dedup.....8a3c71584272e9a807e4393acdac071d
قاعدة البيانات: OpenAIRE
الوصف
تدمد:20799292
DOI:10.3390/electronics12051091