期刊文献+

企业内网蠕虫检测和控制研究

Worm Virus Detection and Control in Enterprise Intranet
原文传递
导出
摘要 目前已有一些全球化的网络蠕虫监测方法,但这些方法并不能很好地适用于局域网.为此,文中提出一种使用本地网协同检测蠕虫的方法,该方法注重分析扫描蠕虫在本地网的行为,通过这些方法给出预警信息,以揭示蠕虫在本地网络中的活动情况。并针对不同的行为特性使用不同的处理方法.结果表明,该方法可以准确、快速地检测出入侵本地网络的扫描蠕虫。 There are several global detection methods, but they are not applicable to LANs. A new cooperative approach to automatic worms detection by using LANs is proposed in this paper, which focuses on scanning worm characteristics in LANs and uses different methods to cope with different worm behaviors, The results show that this approach is promising in quickly finding worm intrusion in LANs and in extracting unknown worm signatures for prevention of more worm threats.
作者 杨荻
出处 《通信技术》 2009年第11期113-115,共3页 Communications Technology
关键词 网络蠕虫 网络攻击 入侵检测 Internet worm network attack intrusion detection
  • 相关文献

参考文献3

  • 1Joel Sommers, Vinod Yegneswaran, Paul Barford. A Framework for Malicious Workload Generation[M].USA:ACM, 2004:82-87.
  • 2郑辉.Internet蠕虫研究[R].天津:南开大学,2003.
  • 3张运凯,王长广,王方伟,马建峰.“震荡波”蠕虫分析与防范[J].计算机工程,2005,31(18):65-67. 被引量:8

二级参考文献6

  • 1AFP.Millions Infected by Internet Worm: Experts. http://www.abc.net. au/news/newsitems/s1099735.htm,2004-05-03
  • 2趋势科技.杀手肆虐, 全球损失逾30亿美元[EB/OL].http://focus.news. yam.com/ .type/life/auto/5042/,2004-05.
  • 3Moor D.Analysis of the Sapphire Worm-A Joint Effort of CAIDA, ICSI, Silicon Defense, UC Berkeley EECS and UC San Diego CSE. http://www.caida.org/analysis/security/sapphire/,2003-02
  • 4Moor D.CAIDA Analysis of Code-Red.http://www.caida.org/analysis/ security/ code-red/
  • 5Song D. A Snapshot of Global Internet Worm Activity.http://www.first. org/events/progconf/2002/d5-02-song-slides.pdf,2002-02
  • 6Roculan J.SQLExp SQL Server Worm Analysis.http://securityresponse. symantec.com/avcenter/Analysis-SQLExp.pdf,2003-01

共引文献7

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部