A Survey of Fast Flux Botnet Detection With Fast Flux Cloud Computing

被引:11
|
作者
Al-Nawasrah, Ahmad [1 ]
Almomani, Ammar Ali [2 ]
Atawneh, Samer [3 ]
Alauthman, Mohammad [4 ]
机构
[1] Taibah Univ, Medina, Saudi Arabia
[2] Al Balqa Appl Univ, Al Huson Univ Coll, Dept Informat Technol, Salt, Jordan
[3] Saudi Elect Univ, Coll Comp & Informat, Riyadh, Saudi Arabia
[4] Zarqa Univ, Fac Informat Technol, Dept Comp Sci, Zarqa, Jordan
关键词
Botnet Detection; Cloud Computing; DNS; Fast-Flux; Neural Network; Zero-Day Domain; NETWORKS;
D O I
10.4018/IJCAC.2020070102
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
A botnet refers to a set of compromised machines controlled distantly by an attacker. Botnets are considered the basis of numerous security threats around the world. Command and control (C&C) servers are the backbone of botnet communications, in which bots send a report to the botmaster, and the latter sends attack orders to those bots. Botnets are also categorized according to their C&C protocols, such as internet relay chat (IRC) and peer-to-peer (P2P) botnets. A domain name system (DNS) method known as fast-flux is used by bot herders to cover malicious botnet activities and increase the lifetime of malicious servers by quickly changing the IP addresses of the domain names over time. Several methods have been suggested to detect fast-flux domains. However, these methods achieve low detection accuracy, especially for zero-day domains. They also entail a significantly long detection time and consume high memory storage. In this survey, we present an overview of the various techniques used to detect fast-flux domains according to solution scopes, namely, host-based, router-based, DNS-based, and cloud computing techniques. This survey provides an understanding of the problem, its current solution space, and the future research directions expected.
引用
收藏
页码:17 / 53
页数:37
相关论文
共 50 条
  • [41] FAST: Fast Accessing Scheme for data Transmission in cloud computing
    Suyel Namasudra
    Rupak Chakraborty
    Seifedine Kadry
    Gunasekaran Manogaran
    Bharat S. Rawal
    Peer-to-Peer Networking and Applications, 2021, 14 : 2430 - 2442
  • [42] Detection of fast-flux botnets through DNS traffic analysis
    Soltanaghaei, E.
    Kharrazi, M.
    SCIENTIA IRANICA, 2015, 22 (06) : 2389 - 2400
  • [43] Dimensional Reduction With Fast ICA for IoT Botnet Detection
    Susanto
    Stiawan, Deris
    Rini, Dian Palupi
    Arifin, M. Agus Syamsul
    Idris, Mohd Yazid
    Alsharif, Nizar
    Budiarto, Rahmat
    JOURNAL OF APPLIED SECURITY RESEARCH, 2023, 18 (04) : 665 - 688
  • [44] A Survey of Botnet and Botnet Detection
    Feily, Maryam
    Shahrestani, Alireza
    Ramadass, Sureswaran
    2009 THIRD INTERNATIONAL CONFERENCE ON EMERGING SECURITY INFORMATION, SYSTEMS, AND TECHNOLOGIES, 2009, : 268 - +
  • [45] Design, installation and preliminary flux measurements at the Fast Flux Experimental Facility (FFEF) of the Fast Breeder Test Reactor (FBTR)
    Kumar, G. V. S. Ashok
    Subramani, C. R. Venkata
    Kumar, R.
    Sivakumar, S.
    Murugan, S.
    Varadharajan, S.
    Sureshkumar, K. V.
    Ananthasivan, K.
    Joseph, M.
    Srinivasan, G.
    JOURNAL OF RADIOANALYTICAL AND NUCLEAR CHEMISTRY, 2019, 320 (01) : 255 - 263
  • [46] Design, installation and preliminary flux measurements at the Fast Flux Experimental Facility (FFEF) of the Fast Breeder Test Reactor (FBTR)
    G. V. S. Ashok Kumar
    C. R. Venkata Subramani
    R. Kumar
    S. Sivakumar
    S. Murugan
    S. Varadharajan
    K. V. Sureshkumar
    K. Ananthasivan
    M. Joseph
    G. Srinivasan
    Journal of Radioanalytical and Nuclear Chemistry, 2019, 320 : 255 - 263
  • [47] Fast-flucos: malicious domain name detection method for Fast-flux based on DNS traffic
    Han C.
    Zhang Y.
    Zhang Y.
    Tongxin Xuebao/Journal on Communications, 2020, 41 (05): : 37 - 47
  • [48] The long, slow death of the Fast Flux reactor
    Abbotts, J
    BULLETIN OF THE ATOMIC SCIENTISTS, 2004, 60 (05) : 56 - 62
  • [49] Radionuclide production using fast flux reactor
    Karelin, YA
    Efimov, VN
    Filimonov, VT
    Kuznetsov, RA
    Revyakin, YL
    Andreev, OI
    Zhemkov, IY
    Bukh, VG
    Lebedev, VM
    Spiridonov, YN
    PROCEEDINGS OF THE 3RD INTERNATIONAL CONFERENCE ON ISOTOPES: ISOTOPE PRODUCTION AND APPLICATIONS IN THE 21ST CENTURY, 2000, : 86 - 89
  • [50] MalDetect: A Framework to detect Fast Flux Domains
    Mahesh
    Chandavarkar, B. R.
    PROCEEDINGS OF 2018 IEEE DISTRIBUTED COMPUTING, VLSI, ELECTRICAL CIRCUITS AND ROBOTICS (DISCOVER), 2018, : 141 - 146