It has previously been assumed that the size of an IPv6 network would make it impossible to scan the network for vulnerable hosts. Recent work has shown this to be false, and several methods for scanning IPv6 networks have been suggested. However, most of these are based on external information like DNS, or pattern inference which requires large amounts of known IP addresses. In this paper, DeHCP, a novel approach based on delimiting IP ranges with closely clustered hosts, is presented and compared to three previously known scanning methods. The method is shown to work in an experimental setting with results comparable to that of the previously suggested methods, and is also shown to have the advantage of not being limited to a specific protocol or probing method. Finally we show that the scan can be executed across multiple VLANs.

Finding a needle in a haystack - A comparative study of IPv6 scanning methods / Bergenholtz, E; Ilie, D; Moss, A; Casalicchio, E. - (2019). (Intervento presentato al convegno 2019 International Symposium on Networks, Computers and Communications, ISNCC 2019 tenutosi a TURKEY).

Finding a needle in a haystack - A comparative study of IPv6 scanning methods

Casalicchio, E
Supervision
2019

Abstract

It has previously been assumed that the size of an IPv6 network would make it impossible to scan the network for vulnerable hosts. Recent work has shown this to be false, and several methods for scanning IPv6 networks have been suggested. However, most of these are based on external information like DNS, or pattern inference which requires large amounts of known IP addresses. In this paper, DeHCP, a novel approach based on delimiting IP ranges with closely clustered hosts, is presented and compared to three previously known scanning methods. The method is shown to work in an experimental setting with results comparable to that of the previously suggested methods, and is also shown to have the advantage of not being limited to a specific protocol or probing method. Finally we show that the scan can be executed across multiple VLANs.
2019
2019 International Symposium on Networks, Computers and Communications, ISNCC 2019
ipv6; ipv6 scanning; cyber scanning; host discovery; penetration testing
04 Pubblicazione in atti di convegno::04b Atto di convegno in volume
Finding a needle in a haystack - A comparative study of IPv6 scanning methods / Bergenholtz, E; Ilie, D; Moss, A; Casalicchio, E. - (2019). (Intervento presentato al convegno 2019 International Symposium on Networks, Computers and Communications, ISNCC 2019 tenutosi a TURKEY).
File allegati a questo prodotto
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11573/1426258
 Attenzione

Attenzione! I dati visualizzati non sono stati sottoposti a validazione da parte dell'ateneo

Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 1
  • ???jsp.display-item.citation.isi??? 0
social impact