Active and Passive Collection of SSH Key Material for Cyber Threat Intelligence

4Citations
Citations of this article
22Readers
Mendeley users who have this article in their library.

Abstract

This article describes a system for storing historical forensic artifacts collected from SSH connections. This system exposes a REST API in a similar fashion as passive DNS databases, malware hash registries, and SSL notaries with the goal of supporting incident investigations and monitoring of infrastructure.

Cite

CITATION STYLE

APA

Dulaunoy, A., Huynen, J. L., & Thirion, A. (2022). Active and Passive Collection of SSH Key Material for Cyber Threat Intelligence. Digital Threats: Research and Practice, 3(3). https://doi.org/10.1145/3491262

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free