Estimation time to read this page 1 min
Internet
Monitoring
Passive listening
PCAP
CSV
Darknet
Monitoring unused address space, or Darknet, consist in capturing all traffic towards a set of ip adresses directly connected to Internet, without any active computer connected. All inbound traffic is unsolicited.
Thanks to our Darknet using 4096 contiguous public IP addresses, we can mesure networks attack on internet in real time, and especially large scale phenomena such as Internet wide port scanning, DDoS backscatter or DNS amplification attempts.
Our plateforme is directly connected with the NICT in Japan since November 2014, and collect more thant 20M events per day, which are indexed in real time in an Elasticsearch cluster for analysis.
Metadata
Dataset name | Darknet |
---|---|
Authors | LHS Nancy, NICT |
Format | PCAP, CSV |
Licence | Under NDA, ask us |
Experimentation Platform | darknet |
Production Location | LHS Nancy |
Production Date | Since November 2014 |
Update Frequency | Daily |
URL | ask us |