On detection and prevention of zero-day attack using cuckoo sandbox in software-defined networks

Joint Authors

Shurman, Muhammad
al-Rashdan, Hudhayfah
al-Nabilsi, Sharhabil

Source

The International Arab Journal of Information Technology

Issue

Vol. 17, Issue 4A (s) (31 Jul. 2020), pp.662-670, 9 p.

Publisher

Zarqa University Deanship of Scientific Research

Publication Date

2020-07-31

Country of Publication

Jordan

No. of Pages

9

Main Subjects

Economics & Business Administration

Abstract EN

Networks attacker may identify the network vulnerability within less than one day; this kind of attack is known as zero-day attack.

This undiscovered vulnerability by vendors empowers the attacker to affect or damage the network operation, because vendors have less than one day to fix this new exposed vulnerability.

The existing defense mechanisms against the zero-day attacks focus on the prevention effort, in which unknown or new vulnerabilities typically cannot be detected.

To the best of our knowledge the protection mechanism against zero-day attack is not widely investigated for Software-Defined Networks (SDNs).

Thus, in this work we are motivated to develop a new zero-day attack detection and prevention mechanism for SDNs by modifying Cuckoo sandbox tool.

The mechanism is implemented and tested under UNIX system.

The experiments results show that our proposed mechanism successfully stops the zero-day malwares by isolating the infected clients, in order to prevent the malwares from spreading to other clients.

Moreover, results show the effectiveness of our mechanism in terms of detection accuracy and response time.

American Psychological Association (APA)

al-Rashdan, Hudhayfah& Shurman, Muhammad& al-Nabilsi, Sharhabil. 2020. On detection and prevention of zero-day attack using cuckoo sandbox in software-defined networks. The International Arab Journal of Information Technology،Vol. 17, no. 4A (s), pp.662-670.
https://search.emarefa.net/detail/BIM-1432364

Modern Language Association (MLA)

al-Rashdan, Hudhayfah…[et al.]. On detection and prevention of zero-day attack using cuckoo sandbox in software-defined networks. The International Arab Journal of Information Technology Vol. 17, no. 4A (Special issue) (2020), pp.662-670.
https://search.emarefa.net/detail/BIM-1432364

American Medical Association (AMA)

al-Rashdan, Hudhayfah& Shurman, Muhammad& al-Nabilsi, Sharhabil. On detection and prevention of zero-day attack using cuckoo sandbox in software-defined networks. The International Arab Journal of Information Technology. 2020. Vol. 17, no. 4A (s), pp.662-670.
https://search.emarefa.net/detail/BIM-1432364

Data Type

Journal Articles

Language

English

Notes

Includes bibliographical references : p. 668-669

Record ID

BIM-1432364