Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

4 results about "ARP spoofing" patented technology

In computer networking, ARP spoofing, ARP cache poisoning, or ARP poison routing, is a technique by which an attacker sends (spoofed) Address Resolution Protocol (ARP) messages onto a local area network. Generally, the aim is to associate the attacker's MAC address with the IP address of another host, such as the default gateway, causing any traffic meant for that IP address to be sent to the attacker instead.

A method and system for detecting Address Resolution Protocol (ARP) attacks

This disclosure provides an Address Resolution Protocol (ARP) attack detection method and system, comprising: sending probe data packets to key network nodes from a host and calculating the round-trip time; determining whether network behavior is abnormal based on the round-trip time; if so, extracting the mapping relationship; obtaining a legitimate mapping benchmark; determining whether the MAC addresses corresponding to the IP addresses are consistent; if so, continuing periodic probing; otherwise, marking cached entries as suspicious infected entries; constructing and sending ARP request data packets to the network based on the IP addresses corresponding to the suspicious infected entries; receiving the ARP request data packets and performing consistency verification; determining whether the consistency verification result contains ARP spoofing attack behavior; if so, performing overwrite repair and converting the repaired entries into static entries; otherwise, continuing periodic probing; otherwise, sending the probe data packets to the key network nodes.
Owner:HANGZHOU NETWORK SECURITY DETECTION TECHNOLOGY CO LTD

Data interaction method and system of reinforced switch and switch

The invention relates to the technical field of data interaction, in particular to a data interaction method and system for a reinforced switch and the switch, and the method comprises the steps: capturing an ARP (Address Resolution Protocol) message for the reinforced switch in real time, and according to a message format, performing data interaction on the ARP message; obtaining an Ethernet source MAC address, an operation type, a sending end MAC address, a sending end IP address and sending time of each ARP message in each monitoring time period; the high-frequency responsivity, the mapping anomaly degree, the first evaluation value, the flow anomaly degree, the second evaluation value and the discrimination coefficient of the IP address of each sending end in each monitoring time period are calculated, the legality of the IP address of each sending end is evaluated, and the reinforced switch allows the legal IP address to perform data interaction. According to the method, the ARP spoofing attack can be timely and effectively detected and defended, the influence range of the ARP spoofing attack is controlled, and the security and stability of data interaction of the reinforced switch are improved.
Owner:HUNAN JUNAN XINDA TECH CO LTD

Data interaction method, system and switch of reinforced switch

The present application relates to the field of data interaction technology, and specifically to a data interaction method, system, and switch for a reinforced switch. The method comprises: capturing ARP messages of the reinforced switch in real time, and obtaining the Ethernet source MAC address, operation type, sender MAC address, sender IP address, and sending time of each ARP message in each monitoring period according to the message format; calculating the high-frequency response, mapping anomaly, first evaluation value, traffic anomaly, second evaluation value, and discrimination coefficient of each sender IP address in each monitoring period, evaluating the legitimacy of each sender IP address, and the reinforced switch allowing legitimate IP addresses to interact with data. The present application can timely and effectively detect and defend against ARP spoofing attacks, control the impact range of ARP spoofing attacks, and improve the security and stability of data interaction of the reinforced switch.
Owner:HUNAN JUNAN XINDA TECH CO LTD

Secure communication methods, devices, air conditioning and storage media

This application relates to a secure communication method, apparatus, air conditioner, and storage medium. The method includes: acquiring a data frame to be sent, counting the data frames already sent to obtain the number of sent frames, determining a sending communication interface from multiple candidate communication interfaces based on the number of sent frames, and sending the data frame to be sent to the receiving end through the sending communication interface. By counting the sent data frames to determine the corresponding sending communication interface, this method can solve the technical problem that existing encrypted communication technologies often use a single communication interface for data transmission. When this communication interface is attacked by man-in-the-middle attacks such as ARP spoofing or SSL stripping, or is eavesdropped by unauthorized devices, attackers can directly intercept the transmitted ciphertext and even crack the key through protocol vulnerabilities, leading to a complete failure of communication security and reliability.
Owner:EDGELESS SEMICON CO LTD OF ZHUHAI +1