Detecting a botnet in a network
نویسندگان
چکیده
We formalize the problem of detecting presence a botnet in network as hypothesis testing where we observe single instance graph. The null hypothesis, corresponding to absence botnet, is modeled random geometric graph every vertex assigned location on $d$-dimensional torus and two vertices are connected when their distance smaller than certain threshold. alternative similar, except that there small number vertices, called ignore this structure simply connect randomly other with prescribed probability. present tests able detect such botnet. first test based idea tend form large isolated stars not under hypothesis. second uses average distance, which becomes significantly shorter show both these asymptotically optimal. However, numerical simulations star performs better networks moderate size. Finally, construct robust scheme also identify
منابع مشابه
BotSniffer: Detecting Botnet Command and Control Channels in Network Traffic
Botnets are now recognized as one of the most serious security threats. In contrast to previous malware, botnets have the characteristic of a command and control (C&C) channel. Botnets also often use existing common protocols, e.g., IRC, HTTP, and in protocol-conforming manners. This makes the detection of botnet C&C a challenging problem. In this paper, we propose an approach that uses network...
متن کاملStegobot: A Covert Social Network Botnet
We propose Stegobot, a new generation botnet that communicates over probabilistically unobservable communication channels. It is designed to spread via social malware attacks and steal information from its victims. Unlike conventional botnets, Stegobot traffic does not introduce new communication endpoints between bots. Instead, it is based on a model of covert communication over a social-netwo...
متن کاملSub-Botnet Cordination Using Tokens in a Switched Network
Botnets have evolved to incorporate peer-to-peer communication for the purpose of better hiding the administrative source of the botnet. Current botnet detection mechanisms identify network traffic patterns at strategic locations within a network such as the gateway. As detection techniques improve, botnet design will continue to evolve to evade detection; thus, it is advantageous to identify p...
متن کاملAntisocial Networks: Turning a Social Network into a Botnet
Antisocial Networks are distributed systems based on social networking Web sites that can be exploited by attackers, and directed to carry out network attacks. Malicious users are able to take control of the visitors of social sites by remotely manipulating their browsers through legitimate Web control functionality such as image-loading HTML tags, JavaScript instructions, etc. In this paper we...
متن کاملnetwork of phonological rules in lori dialect of andimeshk: a study within the framework of post-generative approach.
پژوهش حاضر ارائه ی توصیفی است از نظام آوایی گویش لری شهر اندیمشک، واقع در شمال غربی استان خوزستان. چهارچوب نظری این پژوهش، انگاره ی پسازایشی جزءمستقل می باشد. این پایان نامه شامل موارد زیر است: -توصیف آواهای این گویش به صورت آواشناسی سنتی و در قالب مختصه های زایشی ممیز، همراه با آوانوشته ی تفصیلی؛ -توصیف نظام آوایی گویش لری و قواعد واجی آن در چهارچوب انگاره ی پسازایشی جزءمستقل و معرفی برهم کن...
ذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
ژورنال
عنوان ژورنال: Mathematical statistics and learning
سال: 2021
ISSN: ['2520-2316', '2520-2324']
DOI: https://doi.org/10.4171/msl/23