{"id":1819,"date":"2021-12-07T08:49:00","date_gmt":"2021-12-07T16:49:00","guid":{"rendered":"https:\/\/ant.isi.edu\/blog\/?p=1819"},"modified":"2021-12-06T15:25:39","modified_gmt":"2021-12-06T23:25:39","slug":"new-poster-chhoyhopper-a-moving-target-defense-with-ipv6-at-acsac-2021","status":"publish","type":"post","link":"https:\/\/ant.isi.edu\/blog\/?p=1819","title":{"rendered":"new poster &#8220;Chhoyhopper: A Moving Target Defense with IPv6&#8221; at ACSAC-2021"},"content":{"rendered":"\n<p>We published a new poster titled <a rel=\"noreferrer noopener\" href=\"https:\/\/ant.isi.edu\/~rizvi\/acsac-2021\/CHHOYHOPPER-ABSTRACT-2021.pdf\" data-type=\"URL\" data-id=\"https:\/\/ant.isi.edu\/~rizvi\/acsac-2021\/CHHOYHOPPER-ABSTRACT-2021.pdf\" target=\"_blank\">&#8220;Chhoyhopper: A Moving Target Defense with IPv6&#8221;<\/a> by A S M Rizvi (USC\/ISI) and John Heidemann (USC\/ISI) at <a rel=\"noreferrer noopener\" href=\"https:\/\/www.acsac.org\/2021\/\" data-type=\"URL\" data-id=\"https:\/\/www.acsac.org\/2021\/\" target=\"_blank\">ACSAC-2021<\/a>. We presented our <a rel=\"noreferrer noopener\" href=\"https:\/\/ant.isi.edu\/~rizvi\/acsac-2021\/CHHOYHOPPER_POSTER.pdf\" data-type=\"URL\" data-id=\"https:\/\/ant.isi.edu\/~rizvi\/acsac-2021\/CHHOYHOPPER_POSTER.pdf\" target=\"_blank\">poster<\/a> virtually using a <a rel=\"noreferrer noopener\" href=\"https:\/\/ant.isi.edu\/~rizvi\/acsac-2021\/CHHOYHOPPER_VIDEO.mp4\" data-type=\"URL\" data-id=\"https:\/\/ant.isi.edu\/~rizvi\/acsac-2021\/CHHOYHOPPER_VIDEO.mp4\" target=\"_blank\">video<\/a>.  <a href=\"https:\/\/ant.isi.edu\/software\/chhoyhopper\/index.html\">We provide chhoyhopper as open source<\/a>&#8211;try it out!<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><a href=\"https:\/\/ant.isi.edu\/blog\/wp-content\/uploads\/2021\/12\/chhoyhopper.png\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"501\" src=\"https:\/\/ant.isi.edu\/blog\/wp-content\/uploads\/2021\/12\/chhoyhopper-1024x501.png\" alt=\"\" class=\"wp-image-1820\" srcset=\"https:\/\/ant.isi.edu\/blog\/wp-content\/uploads\/2021\/12\/chhoyhopper-1024x501.png 1024w, https:\/\/ant.isi.edu\/blog\/wp-content\/uploads\/2021\/12\/chhoyhopper-300x147.png 300w, https:\/\/ant.isi.edu\/blog\/wp-content\/uploads\/2021\/12\/chhoyhopper-768x375.png 768w, https:\/\/ant.isi.edu\/blog\/wp-content\/uploads\/2021\/12\/chhoyhopper-1536x751.png 1536w, https:\/\/ant.isi.edu\/blog\/wp-content\/uploads\/2021\/12\/chhoyhopper-2048x1001.png 2048w, https:\/\/ant.isi.edu\/blog\/wp-content\/uploads\/2021\/12\/chhoyhopper-1200x587.png 1200w, https:\/\/ant.isi.edu\/blog\/wp-content\/uploads\/2021\/12\/chhoyhopper-1980x968.png 1980w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/a><figcaption>Client and server interaction in Chhoyhopper. A client with a shared secret key can only get access to the system.<\/figcaption><\/figure>\n\n\n\n<p>From the <a href=\"https:\/\/ant.isi.edu\/~rizvi\/acsac-2021\/CHHOYHOPPER-ABSTRACT-2021.pdf\" data-type=\"URL\" data-id=\"https:\/\/ant.isi.edu\/~rizvi\/acsac-2021\/CHHOYHOPPER-ABSTRACT-2021.pdf\" target=\"_blank\" rel=\"noreferrer noopener\">abstract<\/a>:<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\"><p>Services on the public Internet are frequently scanned, then subject to brute-force and denial-of-service attacks. We would like to run such services stealthily, available to friends but hidden from adversaries. In this work, we propose a moving target defense named \u201cChhoyhopper\u201d that utilizes the vast IPv6 address space to conceal publicly available services. The client and server hop to different IPv6 addresses in a pattern based on a shared, pre-distributed secret and the time of day. By hopping over a \/64 prefix, services cannot be found by active scanners, and passively observed information is useless after two minutes. We demonstrate our system with the two important applications\u2014SSH and HTTPS.<\/p><\/blockquote>\n\n\n\n<p>This work is supported, in part, by DHS HSARPA Cyber Security Division via contract number HSHQDC-17-R-B0004-TTA.02-0006-I, and by DARPA under Contract No. HR001120C0157.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>We published a new poster titled &#8220;Chhoyhopper: A Moving Target Defense with IPv6&#8221; by A S M Rizvi (USC\/ISI) and John Heidemann (USC\/ISI) at ACSAC-2021. We presented our poster virtually using a video. We provide chhoyhopper as open source&#8211;try it out! From the abstract: Services on the public Internet are frequently scanned, then subject to [&hellip;]<\/p>\n","protected":false},"author":998,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[280,282],"tags":[141,58,335,61,336,133,16,57],"class_list":["post-1819","post","type-post","status-publish","format-standard","hentry","category-presentations","category-publications","tag-ant","tag-isi","tag-moving-target","tag-posters","tag-sabres","tag-scanning","tag-software","tag-usc"],"_links":{"self":[{"href":"https:\/\/ant.isi.edu\/blog\/index.php?rest_route=\/wp\/v2\/posts\/1819","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ant.isi.edu\/blog\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ant.isi.edu\/blog\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ant.isi.edu\/blog\/index.php?rest_route=\/wp\/v2\/users\/998"}],"replies":[{"embeddable":true,"href":"https:\/\/ant.isi.edu\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1819"}],"version-history":[{"count":3,"href":"https:\/\/ant.isi.edu\/blog\/index.php?rest_route=\/wp\/v2\/posts\/1819\/revisions"}],"predecessor-version":[{"id":1848,"href":"https:\/\/ant.isi.edu\/blog\/index.php?rest_route=\/wp\/v2\/posts\/1819\/revisions\/1848"}],"wp:attachment":[{"href":"https:\/\/ant.isi.edu\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1819"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ant.isi.edu\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1819"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ant.isi.edu\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1819"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}