ResearchBib Share Your Research, Maximize Your Social Impacts
Sign for Notice Everyday Sign up >> Login

Towards Realization of Large-Scale Botnet Probing Events

Journal: Bonfring International Journal of Research in Communication Engineering (Vol.01, No. 1)

Publication Date:

Authors : ; ;

Page : 22-25

Keywords : Botnet; Computer Network Security; Global Property Extrapolation; Honeynet;

Source : Downloadexternal Find it from : Google Scholarexternal

Abstract

Today?s attack scenery is governed by Botnets. Botnet refer to a group of bots?a sort of malware which allows an attacker to achieve complete control over the affected computer. Botnets are often run by malicious programmers with specific skills while advanced attackers manage the control channel. This work is to understand the consequence of large-scale ?botnet probes? through investigating the ways to analyze collections of malicious probing traffic .In such events, a whole collection of remote hosts together probes the address space monitored by a sensor in somewhat a synchronized fashion. Our goal is to extend methodologies by which sites receiving such probes can understand using purely local surveillance i.e., information about the probing activity regarding scanning strategies the probing employ and whether the attack specifically targets the site, or the site just accidentally probed as part of a larger, unselective attack? Our analysis draws upon comprehensive honeynet data to discover the occurrence of diverse types of scanning, with properties such as trend, uniformity, coordination, and darknet avoidance. Cross-evaluating with data from DShield assures that our approach holds for contributing to a site?s ?situational awareness? accurately

Last modified: 2013-09-26 20:53:25