본문 바로가기
  • Home

A Method for Detecting Unauthorized Internet Access Node in Private Financial Network

  • Journal of Knowledge Information Technology and Systems
  • Abbr : JKITS
  • 2015, 10(6), pp.653-664
  • Publisher : Korea Knowledge Information Technology Society
  • Research Area : Interdisciplinary Studies > Interdisciplinary Research
  • Published : December 31, 2015

Hyung Jin Cho 1 Kim, Eunjin 2 Huy-Kang Kim 1

1고려대학교
2경기대학교

Accredited

ABSTRACT

Recently, many companies make efforts to enhance security to detect and prevent an APT(Advanced Persistent Treat) attack that mainly target on the companies' PC devices. Most global companies run several branch offices that have numerous PC devices, but they are not easily controlled by a central security policy. Although security policies enforce to prevent unauthorized internet access, there are various detour techniques such as using tethering, open VPN or RogueAP. If a company fails to control all end user's PC devices, this can threaten the company's overall security. Especially, this can be the most critical problem in finance business domain. In this paper, we introduce a method to detect unauthorized internet access node in the closed private network. We conduct this method to find out the unauthorized nodes against the security policy. We deploy this detection method in the real network of a finance company in South Korea. As a result, we can classify several types of unauthorized nodes, and improve the detection techniques.

Citation status

* References for papers published after 2023 are currently being built.