Cloud-Based Push-Styled Mobile Botnets: A Case Study of Exploiting the Cloud to Device Messaging Service

被引:0
|
作者
Zhao, Shuang [1 ,2 ]
Lee, Patrick P. C. [3 ]
Lui, John C. S. [3 ]
Guan, Xiaohong [1 ]
Ma, Xiaobo [1 ]
Tao, Jing [1 ]
机构
[1] Xi An Jiao Tong Univ, Sch Elect & Informat Engn, Xian, Peoples R China
[2] Chinese Acad Sci, Inst Informat Engn, Beijing, Peoples R China
[3] Chinese Univ Hong Kong, Dept Comp Sci & Engn, Hong Kong, Hong Kong, Peoples R China
基金
中国国家自然科学基金;
关键词
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Given the popularity of smartphones and mobile devices, mobile botnets are becoming an emerging threat to users and network operators. We propose a new form of cloud-based push-styled mobile botnets that exploits today's push notification services as a means of command dissemination. To motivate its practicality, we present a new command and control (C&C) channel using Google's Cloud to Device Messaging (C2DM) service, and develop a C2DM botnet specifically for the Android platform. We present strategies to enhance its scalability to large botnet coverage and its resilience against service disruption. We prototype a C2DM botnet, and perform evaluation to show that the C2DM botnet is stealthy in generating heartbeat and command traffic, resource-efficient in bandwidth and power consumptions, and controllable in quickly delivering a command to all bots. We also discuss how one may deploy a C2DM botnet, and demonstrate its feasibility in launching an SMS-Spam-and-Click attack. Lastly, we discuss how to generalize the design to other platforms, such as iOS or Window-based systems, and recommend possible defense methods. Given the wide adoption of push notification services, we believe that this type of mobile botnets requires special attention from our community.
引用
收藏
页码:119 / 128
页数:10
相关论文
共 50 条
  • [21] A cloud-based healthcare infrastructure for medical device integration: the bilirubinometer case study
    Cenci, Annalisa
    Liciotti, Daniele
    Ercoli, Baia
    Zingaretti, Primo
    Carnielli, Virgilio Paolo
    2016 12TH IEEE/ASME INTERNATIONAL CONFERENCE ON MECHATRONIC AND EMBEDDED SYSTEMS AND APPLICATIONS (MESA), 2016,
  • [22] A Cloud-based Messaging Service for Cross-Enterprise Data Exchange with Smart Objects
    Strueker, Jens
    Weppner, Harald
    AMCIS 2012 PROCEEDINGS, 2012,
  • [23] A service oriented cloud-based architecture for mobile geolocated emergency services
    Rossi, C.
    Heyi, M. H.
    Scullino, F.
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2017, 29 (11):
  • [24] A Cloud-Based Offloading Service for Computation-Intensive Mobile Applications
    Huang, Bo-Kai
    Cheng, Chih-Chuan
    Lin, Chun-Han
    Hsiu, Pi-Cheng
    2015 IEEE 21ST INTERNATIONAL CONFERENCE ON EMBEDDED AND REAL-TIME COMPUTING SYSTEMS AND APPLICATIONS, 2015, : 80 - 89
  • [25] Quantifying and Evaluating the Technical Debt on Mobile Cloud-Based Service Level
    Skourletopoulos, Georgios
    Mavromoustakis, Constandinos X.
    Mastorakis, George
    Pallis, Evangelos
    Batalla, Jordi Mongay
    Kormentzas, Georgios
    2016 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2016,
  • [26] A SYSTEMATIC MAPPING STUDY ON CLOUD-BASED MOBILE APPLICATION TESTING
    Ya'u, Badamasi Imam
    Salleh, Norsaremah
    Nordin, Azlin
    Alwan, Ali Amer
    Idris, Norbik Bashah
    Abas, Hafiza
    JOURNAL OF INFORMATION AND COMMUNICATION TECHNOLOGY-MALAYSIA, 2019, 18 (04): : 485 - 527
  • [27] Development of IoMT Device for Mobile Eye Examination Via Cloud-based TeleOphthalmology
    Cinay, Dilibal
    Murat, Hacimustafaoglu Ali
    Savas, Dilibal
    2020 21ST INTERNATIONAL CONFERENCE ON RESEARCH AND EDUCATION IN MECHATRONICS (REM), 2020,
  • [28] Web Service Composition Using Windows Workflow for Cloud-Based Mobile Application
    Ramasamy, R. Kanesaraj
    Chua, Fang-Fang
    Haw, Su-Cheng
    ADVANCED COMPUTER AND COMMUNICATION ENGINEERING TECHNOLOGY, 2015, 315
  • [29] MOBIRDF: A cloud-based collaborative editing service for mobile RDF data sharing
    Guetmi, Nadir
    Imine, Abdessamad
    Mechaoui, Moulay Driss
    JOURNAL OF WEB SEMANTICS, 2025, 86
  • [30] Caching-as-a-Service: Virtual Caching Framework in the Cloud-based Mobile Networks
    Li, Xiuhua
    Wang, Xiaofei
    Zhu, Chunsheng
    Cai, Wei
    Leung, Victor C. M.
    2015 IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (INFOCOM WKSHPS), 2015, : 372 - 377