A Network Covert Channel Based on Packet Classification

A network covert channel violates security rules and leaks information imperceptibly. Many researchers have been studying how to construct it, and the basic methods involve exploiting packets head, packets sorting and packets timing, etc. To construct a more secret covert channel, this paper proposes a novel approach based on packet classification. With this method, covert information is encoded by modulating the varieties of packets on the Internet. The basic idea of packet classification, choice of carrier and algorithm of information hiding based on packet classification are discussed. The authors analysis demonstrate that the covert channels based on packet classification cannot be totally eliminated with current methods.