Decrypting SSL/TLS traffic for hidden threats detection

Tamara Radivilova,Lyudmyla Kirichenko,Dmytro Ageyev,Maxim Tawalbeh,Vitalii Bulakh
DOI: https://doi.org/10.1109/DESSERT.2018.8409116
2019-04-16
Abstract:The paper presents an analysis of the main mechanisms of decryption of SSL/TLS traffic. Methods and technologies for detecting malicious activity in encrypted traffic that are used by leading companies are also considered. Also, the approach for intercepting and decrypting traffic transmitted over SSL/TLS is developed, tested and proposed. The developed approach has been automated and can be used for remote listening of the network, which will allow to decrypt transmitted data in a mode close to real time.
Cryptography and Security,Networking and Internet Architecture
What problem does this paper attempt to address?