Estimation time to read this page 1 min
Internet Monitoring Passive listening PCAP CSV
Darknet

Darknet

Monitoring unused address space, or Darknet, consist in capturing all traffic towards a set of ip adresses directly connected to Internet, without any active computer connected. All inbound traffic is unsolicited.

Thanks to our Darknet using 4096 contiguous public IP addresses, we can mesure networks attack on internet in real time, and especially large scale phenomena such as Internet wide port scanning, DDoS backscatter or DNS amplification attempts.

Our plateforme is directly connected with the NICT in Japan since November 2014, and collect more thant 20M events per day, which are indexed in real time in an Elasticsearch cluster for analysis.

Metadata

Dataset name Darknet
Authors LHS Nancy, NICT
Format PCAP, CSV
Licence Under NDA, ask us
Experimentation Platform darknet
Production Location LHS Nancy
Production Date Since November 2014
Update Frequency Daily
URL ask us

Links

Contact