计算机工程

• 安全技术 • 上一篇    下一篇

一种基于文件存储分布的隐蔽信道构造方法

陆思妍,兰少华   

  1. (南京理工大学 计算机科学与工程学院,南京 210094)
  • 收稿日期:2016-06-20 出版日期:2017-09-15 发布日期:2017-09-15
  • 作者简介:陆思妍(1992—),女,硕士,主研方向为网络安全;兰少华,教授、博士。

A Construction Method of Covert Channel Based on File Storage Distribution

LU Siyan,LAN Shaohua   

  1. (School of Computer Science and Engineering,Nanjing University of Science and Technology,Nanjing 210094,China)
  • Received:2016-06-20 Online:2017-09-15 Published:2017-09-15

摘要: 针对现有的长度式隐蔽信道在信道熵和长度分布特征中与合法信道有差异的问题,提出一种基于隐蔽信息存储分布的隐蔽信道构造方法。将不同编码方式下的隐蔽信息转换为二进制比特流,研究比特流中作为隐蔽信息的比特或者比特串的分布概率。分析该概率对传统长度式隐蔽信道的影响,将概率分布统计应用到长度式隐蔽信道的模型构建中,并实现信道熵和长度分布检测。实验结果表明,与传统参考长度隐蔽信道相比,提出方法具有更好的隐蔽性。

关键词: 隐蔽信道, 存储分布, 统计分布, 信道熵, 隐蔽性, 熵检测

Abstract: A covert channel construction method based on covert information storage distribution is proposed to solve the problem that the existing reference length covert channels are different from legal channels in the channel entropy and length distribution features.The secret information encoded by different encoding modes is converted to binary stream.The distribution probability of bit or bit string acting as secret information in the binary stream is studied.The effect of this probability on traditional length covert channel is analyzed.A new construction model of length covert channel applied by probability distribution statistics is designed.Channel entropy and length distribution are detected.Experimental results prove that compared with the traditional reference length covert channel,the proposed method has better imperceptibility.

Key words: covert channel, storage distribution, statistical distribution, channel entropy, imperceptibility, entropy detection

中图分类号: