arrow
返回

DNS for Massive-Scale Command and Control

delete2013-05-01
delete48
PRE
AI
K
Kui Xu *
P
P. J. Butler
S
Sudip Saha
D
Danfeng Yao
DOI:10.1109/TDSC.2013.10delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Attackers, in particular botnet controllers, use stealthy messaging systems to set up large-scale command and control. To systematically understand the potential capability of attackers, we investigate the feasibility of using domain name service (DNS) as a stealthy botnet command-and-control channel. We describe and quantitatively analyze several techniques that can be used to effectively hide malicious DNS activities at the network level. Our experimental evaluation makes use of a two-month-long 4.6-GB campus network data set and 1 million domain names obtained from alexa.com. We conclude that the DNS-based stealthy command-and-control channel (in particular, the codeword mode) can be very powerful for attackers, showing the need for further research by defenders in this direction. The statistical analysis of DNS payload as a countermeasure has practical limitations inhibiting its large-scale deployment.
Keyword:
Network security
DNS security
botnet detection
and command and control
AI总结

AI总结

对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。

期刊

IEEE Transactions on Dependable and Secure Computing 封面图
IEEE Transactions on Dependable and Secure Computing
IF:
7.5
论文数:
2.4K
被引数:
9.6K

机构

暂无机构信息
引用论文

引用论文

Synthesis and pharmacological activity of fluorescent histamine H2 receptor antagonists related to potentidine
err2003-05-01
err0
PREAI
errLiantao Li; Julia Kracht; Shiqi Peng; Günther Bernhardt; Sigurd Elz; Armin Buschauer
err分享
err收藏
Photic epilepsy problems raised in man and animals
err1987-10-01
err0
PREAI
errR. Naquet; Ch. Menini; D. Riche; C. Silva-Barrat; A. Valin
err分享
err收藏
What Do Schools Teach?
err2014-12-15
err0
PREAI
errMichael W. Apple; Nancy R. King
err分享
err收藏
A Call to Leadership
err2015-01-01
err0
PREAI
errPamela McCauley; Elizabeth Lee
err分享
err收藏
学者 查看更多内容