De grootste kennisbank van het HBO

Inspiratie op jouw vakgebied

Vrij toegankelijk

Deel deze publicatie

Detection of Botnet Command and Control Traffic by the Identification of Untrusted Destinations

Open access

Rechten:Alle rechten voorbehouden

Detection of Botnet Command and Control Traffic by the Identification of Untrusted Destinations

Open access

Rechten:Alle rechten voorbehouden

Samenvatting

We present a novel anomaly-based detection approach capable
of detecting botnet Command and Control traffic in an enterprise
network by estimating the trustworthiness of the traffic destinations.
A traffic flow is classified as anomalous if its destination identifier does
not origin from: human input, prior traffic from a trusted destination, or
a defined set of legitimate applications. This allows for real-time detection
of diverse types of Command and Control traffic. The detection
approach and its accuracy are evaluated by experiments in a controlled
environment.

Organisatie
Afdeling
Lectoraat
Gepubliceerd inLecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering Springer, Cham, Pagina's: 174-182
Datum2015-08-11
Type
ISBN978-3-319-23829-6
TaalEngels

Op de HBO Kennisbank vind je publicaties van 26 hogescholen

De grootste kennisbank van het HBO

Inspiratie op jouw vakgebied

Vrij toegankelijk