White Papers

Target-Based TCP Timestamp Stream Reassembly

Overview This paper explores the use of the TCP timestamp option and associated timestamp values to comprehend how different operating systems react to manipulated timestamp values. This is valuable knowledge for an Intrusion Detection System (IDS) or Intrusion Prevention System (IPS) to possess and implement to avoid evasions that employ TCP timestamp value mutations.

Download White Paper

By downloading you agree to our Terms and Conditions. These include information regarding use of your personal data.

Publisher
Sourcefire
File Format
PDF
Date Published
Dec 27, 2007
Format
White Papers
Topics
Intrusion Detection Systems, Network Security, TCP - IP

Similiar White Papers

Exploiting Stateful Inspection of Network Security in Reconfigurable Hardware

Exploiting Stateful Inspection of Network Security in Reconfigurable Hardware

One of the most important areas of a network Intrusion Detection System (NIDS), stateful inspection, is described in thi

Publisher: University of Oslo  |  Tags: ip, network

The dirty dozen: preventing common application-level hack attacks

The dirty dozen: preventing common application-level hack attacks

As organizations have grown increasingly dependent on online software, the risk of malicious attacks has also become far

Publisher: IBM  |  Tags: ip, online software, software

Sourcefire White Papers

Enterprise Threat Management (ETM): Bringing Security Together Through Intelligence

Enterprise Threat Management (ETM): Bringing Security Together Through Intelligence

While IT security spending has been on the increase in recent years, unfortunately so have vulnerabilities and successfu

Publisher: Sourcefire  |  Tags: data, hackers, ips, malware, management, nac, security spending

Building a Real-Time, Adaptive Security Infrastructure

Building a Real-Time, Adaptive Security Infrastructure

Witness the dawn of real-time, adaptive security, where companies not only react to threats but also anticipate them by

Publisher: Sourcefire  |  Tags: infrastructure, network, real-time

Target-Based TCP Stream Reassembly

Target-Based TCP Stream Reassembly

In their landmark 1998 paper, "Insertion, Evasion, and Denial of Service: Eluding Network Intrusion Detection," Thomas P

Publisher: Sourcefire  |  Tags: ip, network