Research Project on TCP Initial Sequence Number Guessing
During my studies in Saarbrücken and as a member of the Saarbrücken Graduate School of Computer Science, I had the opportunity to join one of the Research Groups from the CISPA Helmholtz Center for Information Security. As someone who is highly interested in network security, I joined the research group of Christian Rossow. The research group focuses on system and network security, providing an optimal environment for young researcher to participate at cutting-edge research, aiming to present results at the top conferences.
In my first project I joined one of my fellow colleagues for a project on TCP Initial Sequence Number guessing. In short, this project is about revealing hosts in the internet that use non-random TCP initital sequence numbers, which makes them vulnerable for establishing tcp connection with spoofed IP-adresses.This can be exploited to perform stateful TCP-based DDoS attacks.
This project is currently under submission to USENIX, which is why I won’t get into details here.