COVERT TIMING CHANNELS OVER HTTP CACHE-CONTROL HEADERS

PRIKLADNAYA DISKRETNAYA MATEMATIKA(2015)

引用 0|浏览1
暂无评分
摘要
We introduce and discuss a new family of timing covert channels based on HTTP cache headers. We propose a general scheme of the timing covert channels in terms of access control models and data flow diagrams and suggest two base threat models for them. We then consider peculiarities of program implementation of the timing covert channels and their bandwidth depending on a HTTP cache header, a threat model, a programming language (C, JavaScript, Python, Ruby), and an environment. Finally we provide the basic characteristics of the implemented covert channels in web browsers and BeEF.
更多
查看译文
关键词
computer security,HTTP,cache-control headers,covert channels,web application security,web browsers security,botnets
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要