Visible to the public Network Fingerprinting: Routers under Attack

TitleNetwork Fingerprinting: Routers under Attack
Publication TypeConference Paper
Year of Publication2020
AuthorsMarechal, Emeline, Donnet, Benoit
Conference Name2020 IEEE European Symposium on Security and Privacy Workshops (EuroS PW)
KeywordsAttack, connectivity, Ecosystems, Hardware, Internet, IP networks, network fingerprinting, ping, Predictive Metrics, Probes, pubcrawl, Resiliency, Router Systems Security, security, Topology, Traceroute
AbstractNowadays, simple tools such as traceroute can be used by attackers to acquire topology knowledge remotely. Worse still, attackers can use a lightweight fingerprinting technique, based on traceroute and ping, to retrieve the routers brand, and use that knowledge to launch targeted attacks. In this paper, we show that the hardware ecosystem of network operators can greatly vary from one to another, with all potential security implications it brings. Indeed, depending on the autonomous system (AS), not all brands play the same role in terms of network connectivity. An attacker could find an interest in targeting a specific hardware vendor in a particular AS, if known defects are present in this hardware, and if the AS relies heavily on it for forwarding its traffic.
DOI10.1109/EuroSPW51379.2020.00086
Citation Keymarechal_network_2020