期刊文献+

僵尸网络检测方法研究 被引量:7

Research on Detecting Botnets
下载PDF
导出
摘要 僵尸网络是指由黑客通过多种传播手段入侵并控制的主机组成的网络。僵尸网络是各种恶意软件传播和控制的主要来源,检测僵尸网络对于网络安全非常重要。本文首先介绍了僵尸网络的结构,着重对僵尸网络的命令与控制信道进行了讨论,接着详细介绍了基于主机信息的、基于流量监测的和基于对等网络的僵尸网络检测方法,并进行了比较和讨论。 A botnet is a network of compromised machines that can be remotely controlled to perform illegitimate network activities. In this paper, we introduce the structure of botnets, and focus on the command and control channel, which is important for detecting botnets. We then make a review and discussion on current schemes on detecting botnets.
出处 《电信科学》 北大核心 2007年第12期71-77,共7页 Telecommunications Science
基金 国家自然科学基金资助项目(No.90304011) 高等学校博士学科点专项科研基金资助课题(20040558043)
关键词 僵尸网络 命令与控制信道 网络安全 botnet, command and control channel, network security
  • 相关文献

参考文献17

  • 12006 Annual Report by CNCERT/CC,www.cert.org.cn/english_Web/ document/2006AnnualReportByC NCERT.pdf.
  • 2Barford P, Yegneswaran V. An inside look at botnets, in series: advances in information security, Springer, 2006.
  • 3LURHQ Threat Intelligence Group. Bobax trojan analysis, http:// www.lurhq.com/bobax.html.
  • 4Julian B.Peer-to-peer botnets: overview and case study. In: HotBots '07, First Workshop on Hot Topics in Understanding Botnets, Cambridge, MA, 2007.
  • 5Wang P, et al. An advanced hybrid peer to peer botnet. In: HotBots'07, First Workshop on Hot Topics in Understanding Botnets, Cambridge, MA, 2007.
  • 6Ianelli N ,Hackworth A. Botnets as a vehicle for online crime. CERT Coordination Center,2005.
  • 7Honeynet Project. Know your enemy:tracking botnets, http://www. honeynet.org/papers/bots/.
  • 8Malan D. Rapid detection of botnets through collaborative networks of peers, http'.// www. eecs.harvard, edu/ -malan/ publications/ thesis, pdf.
  • 9Al-Hammadi Y, Aickelin U. Detecting botnets through log correlation. IEEE/IST Workshop on Monitoring, Attack Detection and Mitigation, September 2006.
  • 10Zou C C,Cunningham R. Honeypot-aware advanced botnet construction and maintenance. In:International Conference on Dependable Systems and Networks, 2006.

同被引文献35

引证文献7

二级引证文献6

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部