TY - GEN
T1 - A Covert TLS Encryption Transmission Method Based on Network Covert Channel
AU - Yao, Weikang
AU - Song, Tian
N1 - Publisher Copyright:
© 2023 IEEE.
PY - 2023
Y1 - 2023
N2 - TLS 1.2 protocol, as one of the most essential secure communication protocols, is widely used for web services. However, it has been exposed to many vulnerabilities so far. In order to exploit these vulnerabilities to carry out attacks, the attacker must possess the necessary information. Based on this principle, we proposed a covert TLS encryption transmission method in this paper, which uses a storage network covert channel to transmit important handshake information. The network covert channel hides the true TLS handshake information, thereby improving the security of the entire transmission process. We conducted extensive experiments to evaluate its performance. The experimental results show that our covert channel can guarantee high covertness without delay. Meanwhile, vulnerability testing shows that our scheme can resist most attacks.
AB - TLS 1.2 protocol, as one of the most essential secure communication protocols, is widely used for web services. However, it has been exposed to many vulnerabilities so far. In order to exploit these vulnerabilities to carry out attacks, the attacker must possess the necessary information. Based on this principle, we proposed a covert TLS encryption transmission method in this paper, which uses a storage network covert channel to transmit important handshake information. The network covert channel hides the true TLS handshake information, thereby improving the security of the entire transmission process. We conducted extensive experiments to evaluate its performance. The experimental results show that our covert channel can guarantee high covertness without delay. Meanwhile, vulnerability testing shows that our scheme can resist most attacks.
KW - TLS 1.2
KW - high covertness
KW - network covert channel
KW - secure communication
UR - http://www.scopus.com/inward/record.url?scp=85172027543&partnerID=8YFLogxK
U2 - 10.1109/ISCC58397.2023.10217970
DO - 10.1109/ISCC58397.2023.10217970
M3 - Conference contribution
AN - SCOPUS:85172027543
T3 - Proceedings - IEEE Symposium on Computers and Communications
SP - 1344
EP - 1347
BT - ISCC 2023 - 28th IEEE Symposium on Computers and Communications
PB - Institute of Electrical and Electronics Engineers Inc.
T2 - 28th IEEE Symposium on Computers and Communications, ISCC 2023
Y2 - 9 July 2023 through 12 July 2023
ER -