Subversive Technologies & Countermeasures
Evasion
|
| Evasion describes techniques for attacking a system while remaining undetected by intrusion prevention and intrusion detection software and systems. The subject is very old in that viruses have been avoiding virus scanners since the late 1980's. But more recent, over-the-network exploits have been using special formatting to avoid triggering network IDS equipment. Even more recently, exploits have been crafted in specific ways to bypass and avoid desktop firewalls. Since both IDS and IPS are very new technologies, there are almost limitless ways to bypass such systems. Most of these bypass techniques rely on variations of vector encoding. IDS/IPS systems that depend on specific signatures are especially vulnerable to these weaknesses.
|
|
Articles in category "Evasion"
There are 3 articles in this category.
A
C
S