GADFly: A Fast and Robust Algorithm to Detect P2P Botnets in Communication Graphs

被引:0
|
作者
Joshi, Harshvardhan P. [1 ]
Dutta, Rudra [1 ]
机构
[1] North Carolina State Univ, Dept Comp Sci, Raleigh, NC 27695 USA
关键词
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Botnets can be used to launch large scale and expensive attacks. Botnets are also difficult to detect and disable, especially when they use peer-to-peer (P2P) command & control structures. In this paper we propose GADFly - a fast and robust algorithm to detect P2P botnet structures in communication graphs built from network flow meta-data. While other algorithms have been proposed in literature that use graph analysis or machine learning techniques to detect botnets, they are either slow or have impractical false positives for realistically large graphs with millions of nodes. They also assume availability of universal communication graph data, which is not realistic. The method proposed here is able to precisely detect P2P botnet structures with extremely low false positive rates. In addition, GADFly is also very fast and robust in the face of gaps in communication graph data, making it suitable for practical deployments.
引用
收藏
页数:6
相关论文
共 50 条
  • [31] Equitable Machine Learning Algorithms to Probe Over P2P Botnets
    Bharathula, Pavani
    Menon, N. Mridula
    PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON FRONTIERS IN INTELLIGENT COMPUTING: THEORY AND APPLICATIONS (FICTA) 2015, 2016, 404 : 13 - 21
  • [32] VMM-Based Framework for P2P Botnets Tracking and Detection
    Zhou, LingYun
    ITCS: 2009 INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY AND COMPUTER SCIENCE, PROCEEDINGS, VOL 2, PROCEEDINGS, 2009, : 172 - 175
  • [33] A Reinforcement Approach for Detecting P2P Botnet Communities in Dynamic Communication Graphs
    Joshi, Harshvardhan P.
    Dutta, Rudra
    IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC 2022), 2022, : 56 - 61
  • [34] Detect and Deactivate P2P Zeus Bot
    Mane, Yogita Deepak
    2017 8TH INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION AND NETWORKING TECHNOLOGIES (ICCCNT), 2017,
  • [35] Robust incentives in P2P networks
    Xu, HaiMei
    Tang, LinJian
    Qi, ShouQing
    Shi, YanJun
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE INFORMATION COMPUTING AND AUTOMATION, VOLS 1-3, 2008, : 860 - +
  • [36] Robust P2P Personalized Learning
    Boubouh, Karim
    Boussetta, Amine
    Benkaouz, Yahya
    Guerraoui, Rachid
    2020 INTERNATIONAL SYMPOSIUM ON RELIABLE DISTRIBUTED SYSTEMS (SRDS 2020), 2020, : 299 - 308
  • [37] A Routing Table Poisoning Model for Peer-to-Peer (P2P) Botnets
    Tetarave, Sumit Kumar
    Tripathy, Somanath
    Kalaimannan, Ezhil
    John, Caroline
    Srivastava, Anshika
    IEEE ACCESS, 2019, 7 : 67983 - 67995
  • [38] Enhanced P2P Botnets Detection Framework Architecture with Hybrid Analysis Approach
    Abdullah, Raihana Syahirah
    Faizal, M. A.
    Noh, Zul Azri Muhamad
    JOURNAL OF INFORMATION ASSURANCE AND SECURITY, 2014, 9 (02): : 62 - 71
  • [39] Detecting P2P Botnets using a Multi-Phased Flow Model
    Noh, Sang-Kyun
    Oh, Joo-Hyung
    Lee, Jae-Seo
    Noh, Bong-Nam
    Jeong, Hyun-Cheol
    THIRD INTERNATIONAL CONFERENCE ON DIGITAL SOCIETY: ICDS 2009, PROCEEDINGS, 2009, : 247 - 253
  • [40] Detecting P2P Botnets through Network Behavior Analysis and Machine Learning
    Saad, Sherif
    Traore, Issa
    Ghorbani, Ali
    Sayed, Bassam
    Zhao, David
    Lu, Wei
    Felix, John
    Hakimian, Payman
    2011 NINTH ANNUAL INTERNATIONAL CONFERENCE ON PRIVACY, SECURITY AND TRUST, 2011, : 174 - 180