Jul 2026· Annual International Computer Software and Applications Conference· pp. 2747-2752· 0 citations· 19 references
Computer Science
Abstract
The Transport Layer Security (TLS) protocol secures communications in many types of applications and networks, but has also faced numerous attacks due to protocol and implementation vulnerabilities. Traditional methods for identifying vulnerable TLS hosts, such as periodic scans, are inefficient in dynamic network environments. Moreover, they provide only snapshots of vulnerable hosts at discrete points in time. Alternatively, TLS monitoring tools exploit Intrusion Detection Systems and customized rules for detecting TLS vulnerabilities. We propose E-TLS-Monitor, a tool performing real-time network analysis to identify vulnerable TLS connections using various integrated tools for intrusion detection, TLS testing, certificate validation, or network scanning. Additionally, E-TLS-Monitor has knowledge about the software and hardware of the monitored target systems and exploits information retrieved from the MITRE Common Vulnerabilities and Exposures database to focus on relevant threats. E-TLS-Monitor is faster and more effective than Threat-TLS, a previously proposed monitoring tool for detecting vulnerable TLS connections in networked contexts.
The review begins with the network architecture, representative protocols such as IEC 104, IEC 61850, and Distributed Network Protocol 3 (DNP3), and their associated security risks, thereby clarifying the foundational role of protocol-level visibility in power monitoring scenarios.
Shan-Shan Bai, Pengyuan Wang, Tian-Le Gao et al.· Journal of Electronics and E...· 0 citations
The proposed combination of control-flow anomaly detection, attack-tree based intrusion identification, and hardware-based monitoring can improve not only anomaly detection, but also the diagnostic precision of attack-tree-based cyber-attack identification.
M. Sachenbacher, Martin Leucker, Alexander Weiss et al.· 0 citations
VPID, a lightweight framework for vulnerability prioritization and intrusion detection that consists of two principal modules: controlled vulnerability validation and intelligent intrusion defense, is designed and implemented.
The findings indicate that the detector can serve network administrators as an open-source instrument for continuous security monitoring and forensic reconstruction.
Base Jay-ar B., Palmares Serafin C., Soberano Kristine T.· World Journal of Advanced En...· 0 citations
Because most intrusion detection systems and firewalls identify and separate malicious traits that only come from the externalenvironment of the system. It is difficult to differentiate between the actual system users, the internal attackers who access the device.Also, studies claim that these commands can be recognize...
V. P., SyamDev R. S.· Journal of Science & Technol...· 0 citations
SiteGuard, an inline network intrusion detection system with programmable switches specifically developed to protect enterprise campus sites connecting to ISP, is designed and implemented and proposes a dual-plane feature extraction model to extract extensive traffic features at near line-speed.
Han Zhang, X. Liu, Linqiang Qian et al.· Conference on Applications,...· 0 citations
We use cookies to run the site and, with your consent, for analytics and to show ads.
See our Cookie Policy.