Skip to main content

Showing 1–7 of 7 results for author: Izhikevich, L

Searching in archive cs. Search in all archives.
.
  1. arXiv:2312.00580  [pdf, other

    cs.CR cs.NI

    Using Honeybuckets to Characterize Cloud Storage Scanning in the Wild

    Authors: Katherine Izhikevich, Geoff Voelker, Stefan Savage, Liz Izhikevich

    Abstract: In this work, we analyze to what extent actors target poorly-secured cloud storage buckets for attack. We deployed hundreds of AWS S3 honeybuckets with different names and content to lure and measure different scanning strategies. Actors exhibited clear preferences for scanning buckets that appeared to belong to organizations, especially commercial entities in the technology sector with a vulnerab… ▽ More

    Submitted 1 December, 2023; originally announced December 2023.

  2. Stratosphere: Finding Vulnerable Cloud Storage Buckets

    Authors: Jack Cable, Drew Gregory, Liz Izhikevich, Zakir Durumeric

    Abstract: Misconfigured cloud storage buckets have leaked hundreds of millions of medical, voter, and customer records. These breaches are due to a combination of easily-guessable bucket names and error-prone security configurations, which, together, allow attackers to easily guess and access sensitive data. In this work, we investigate the security of buckets, finding that prior studies have largely undere… ▽ More

    Submitted 23 September, 2023; originally announced September 2023.

    Comments: Proceedings of the 24th International Symposium on Research in Attacks, Intrusions and Defenses. 2021

  3. ZDNS: A Fast DNS Toolkit for Internet Measurement

    Authors: Liz Izhikevich, Gautam Akiwate, Briana Berger, Spencer Drakontaidis, Anna Ascheman, Paul Pearce, David Adrian, Zakir Durumeric

    Abstract: Active DNS measurement is fundamental to understanding and improving the DNS ecosystem. However, the absence of an extensible, high-performance, and easy-to-use DNS toolkit has limited both the reproducibility and coverage of DNS research. In this paper, we introduce ZDNS, a modular and open-source active DNS measurement framework optimized for large-scale research studies of DNS on the public Int… ▽ More

    Submitted 23 September, 2023; originally announced September 2023.

    Comments: Proceedings of the 22nd ACM Internet Measurement Conference. 2022

  4. Cloud Watching: Understanding Attacks Against Cloud-Hosted Services

    Authors: Liz Izhikevich, Manda Tran, Michalis Kallitsis, Aurore Fass, Zakir Durumeric

    Abstract: Cloud computing has dramatically changed service deployment patterns. In this work, we analyze how attackers identify and target cloud services in contrast to traditional enterprise networks and network telescopes. Using a diverse set of cloud honeypots in 5~providers and 23~countries as well as 2~educational networks and 1~network telescope, we analyze how IP address assignment, geography, networ… ▽ More

    Submitted 28 September, 2023; v1 submitted 23 September, 2023; originally announced September 2023.

    Comments: Proceedings of the 2023 ACM Internet Measurement Conference (IMC '23), October 24--26, 2023, Montreal, QC, Canada

  5. arXiv:2306.07469  [pdf, other

    cs.NI

    Democratizing LEO Satellite Network Measurement

    Authors: Liz Izhikevich, Manda Tran, Katherine Izhikevich, Gautam Akiwate, Zakir Durumeric

    Abstract: Low Earth Orbit (LEO) satellite networks are quickly gaining traction with promises of impressively low latency, high bandwidth, and global reach. However, the research community knows relatively little about their operation and performance in practice. The obscurity is largely due to the high barrier of entry for measuring LEO networks, which requires deploying specialized hardware or recruiting… ▽ More

    Submitted 12 October, 2023; v1 submitted 12 June, 2023; originally announced June 2023.

    Comments: Pre-Print

    Journal ref: ACM SIGMETRICS/IFIP Performance 2024

  6. arXiv:2303.00895  [pdf, other

    cs.NI cs.DC cs.LG

    Predicting IPv4 Services Across All Ports

    Authors: Liz Izhikevich, Renata Teixeira, Zakir Durumeric

    Abstract: Internet-wide scanning is commonly used to understand the topology and security of the Internet. However, IPv4 Internet scans have been limited to scanning only a subset of services -- exhaustively scanning all IPv4 services is too costly and no existing bandwidth-saving frameworks are designed to scan IPv4 addresses across all ports. In this work we introduce GPS, a system that efficiently discov… ▽ More

    Submitted 1 March, 2023; originally announced March 2023.

    Journal ref: ACM SIGCOMM 2022 Conference (SIGCOMM '22), August 22--26, 2022, Amsterdam, Netherlands

  7. arXiv:2301.04841  [pdf, other

    cs.CR cs.NI

    LZR: Identifying Unexpected Internet Services

    Authors: Liz Izhikevich, Renata Teixeira, Zakir Durumeric

    Abstract: Internet-wide scanning is a commonly used research technique that has helped uncover real-world attacks, find cryptographic weaknesses, and understand both operator and miscreant behavior. Studies that employ scanning have largely assumed that services are hosted on their IANA-assigned ports, overlooking the study of services on unusual ports. In this work, we investigate where Internet services a… ▽ More

    Submitted 12 January, 2023; originally announced January 2023.

    Comments: In 30th USENIX Security Symposium, 2021