期刊文献+

基于搜索引擎蠕虫的分析与检测 被引量:6

The Analysis and Detection of Worms Based on Web Search Engine
下载PDF
导出
摘要 目前,蠕虫已经成为了互联网络安全的最大威胁,蠕虫攻击、扫描技术经过不断的发展和改进,已经日趋智能化、隐蔽化。搜索引擎被人们用来在Internet上检索感兴趣的东西,同样也会被蠕虫利用进行攻击和传播。利用互联网络的搜索引擎进行攻击和传播的蠕虫,实现了隐蔽、小流量、准确地传播。文章首先分析了这类基于搜索引擎的蠕虫的特征,然后提出了用户检索模型和异常判定算法,经过实验证明,此种检测方法确实高效可行。 Nowadays,the worm becomes the biggest threat in the Internet,the method of propagation of worm is becoming more intelligent and enshrouded.Search engines are used to retrieve interesting things,meanwhile,they can be used by worm for propagation.Worms based on search engines implement enshrouded,precise propagation with small network traffic.ln this paper,we introduce the feature of this kind of worm,and then we propose a client search model and an anomalous detection algorithm.This method is proved to be of high efficiency by experiments.
出处 《计算机工程与应用》 CSCD 北大核心 2006年第7期112-115,共4页 Computer Engineering and Applications
基金 国家863高技术研究发展计划资助项目(编号:2001AA147010B)
关键词 搜索引擎 Perl.Santy蠕虫 统计 异常检测 search engine,Perl.Santy worm,statistics,anomaly detection
  • 相关文献

参考文献10

  • 1Debasis Mohanty.Demystifying Google Hacks.http://www.hackspirits.com/
  • 2文伟平,卿斯汉,蒋建春,王业君.网络蠕虫研究与进展[J].软件学报,2004,15(8):1208-1219. 被引量:187
  • 3郑辉.Santy蠕虫分析报告.2004-12-23
  • 4蒋建春,马恒太,任党恩,卿斯汉.网络安全入侵检测:研究综述[J].软件学报,2000,11(11):1460-1466. 被引量:370
  • 5Cliff C Zou,Lixin Gao,Weibo Gong et al.Monitoring and Early Warning for Internet Worms[C].In:10th ACM Conference on Computer and Communication Security (CCS'03),2003-10
  • 6Ke Wang,Salvatore J Stolfo.Anomalous Payload-based Network Intrusion Detection.RAID,2004-09
  • 7C Kruegel,T Toth,E Kirda.Service Specific Anomaly Detection for Network Intrusion Detection[C].In:Proceedings of the Symposium on Applied Computing(SAC),ACM Press
  • 8T Toth,C Kruegel.Accurate Buffer Overflow Detection via Abstract Payload Execution[C].In:5th Symposium on Recent Advances in Intrusion Detection(RAID),Lecture Notes in Computer Science,Springer Verlag,Switzerland,2002-10
  • 9Search Engine Marketing Firm iProspect Survey Confirms Importance of Visibility on the First Three Pages of Search Results.http://www.iprospect.com/media/press2004 04 20.htm
  • 10R Fielding,J Gettys.Hypertext Transfer Protocol HTTP/1.1[S].RFC 2612,1999-06

二级参考文献10

共引文献553

同被引文献43

引证文献6

二级引证文献15

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部