SoylentNews
SoylentNews is people
https://soylentnews.org/

Title    Software-Defined Networking is Dangerously Sniffable
Date    Saturday August 27 2016, @08:16AM
Author    janrinok
Topic   
from the dept.
https://soylentnews.org/article.pl?sid=16/08/26/1646251

Arthur T Knackerbracket has found the following story:

Software-defined networking (SDN) controllers respond to network conditions by pushing new flow rules to switches. And that, say Italian researchers, creates an unexpected security problem.

The researchers were able to persuade their SDN environment to leak information that sysadmins probably don't want out in public, including network virtualisation setups, quality of service policies, and more importantly, security tool configuration information such as "attack detection thresholds for network scanning".

Even a single switch's flow table, they write, can provide this kind of information, as well as serving as a side-channel for an attacker to exploit.

The three network boffins – Mauro Conti of the University of Padova, and Sapienza University's Fabio De Gaspari and Luigi Mancini – are particularly concerned about SDN being exploited to help an attacker build a profile of the target network, in what they call a Know Your Enemy (KYE) attack.

For example, they write, an attacker could potentially:

The paper points out that none of this is specific to particular devices: "the KYE attack exploits a structural vulnerability of SDN, which derives from the on-demand management of network flows, that in turn is one of the main features and strengths" of SDN.


Original Submission

Links

  1. "Arthur T Knackerbracket" - https://soylentnews.org/~Arthur+T+Knackerbracket/
  2. "following story" - http://www.theregister.co.uk/2016/08/23/sdns_normal_behaviour_is_sniffable_say_researchers/
  3. "Original Submission" - https://soylentnews.org/submit.pl?op=viewsub&subid=15459

© Copyright 2024 - SoylentNews, All Rights Reserved

printed from SoylentNews, Software-Defined Networking is Dangerously Sniffable on 2024-04-23 22:22:58