...
首页> 外文期刊>International journal of communication systems >On the resilience of P2P botnet footprints in the presence of legitimate P2P traffic
【24h】

On the resilience of P2P botnet footprints in the presence of legitimate P2P traffic

机译:关于合法P2P流量存在的P2P僵尸网足迹的恢复力

获取原文
获取原文并翻译 | 示例
           

摘要

Botnet is a distributed platform for illegal activities severely threaten the security of the Internet. Fortunately, although their complicated nature, bots leave some footprints during the C&C communication that have been utilized by security researchers to design detection mechanisms. Nevertheless, botnet designers are always trying to evade detection systems by leveraging the legitimate P2P protocol as C&C channel or even mimicking legitimate peer-to-peer (P2P) behavior. Consequently, detecting P2P botnet in the presence of normal P2P traffic is one of the most challenging issues in network security. However, the resilience of P2P botnet detection systems in the presence of normal P2P traffic is not investigated in most proposed schemes. In this paper, we focused on the footprint as the most essential part of a detection system and presented a taxonomy of footprints utilized in behavioral P2P botnet detection systems. Then, the resilience of mentioned footprints is analyzed using three evaluation scenarios. Our experimental and analytical investigations indicated that the most P2P botnet footprints are not resilient to the presence of legitimate P2P traffic and there is a pressing need to introduce more resilient footprints.
机译:僵尸网络是一个分布式平台,用于非法活动严重威胁到互联网的安全性。幸运的是,虽然它们的性质复杂,但机器人在通过安全研究人员利用的C&C通信中留下了一些足迹,以设计检测机制。尽管如此,僵尸网络设计人员始终试图通过利用合法的P2P协议作为C&C信道甚至模拟合法的点对点(P2P)行为来逃避检测系统。因此,在正常的P2P流量存在下检测P2P僵尸网络是网络安全中最具挑战性的问题之一。然而,在大多数提出的方案中没有研究在存在正常的P2P流量存在下P2P僵尸网络检测系统的抵御。在本文中,我们专注于检测系统中最重要的部分的足迹,并提出了在行为P2P僵尸网络检测系统中使用的占地面积分类。然后,使用三种评估场景分析提到的占地面积的抵御能力。我们的实验和分析调查表明,最多的P2P僵尸网络脚印不适合存在合法的P2P流量,并且需要引入更多弹性占地面积。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号