Automated Simulation P2P Botnets Signature Detection by Rule-based Approach

被引:0
|
作者
Abdullah, Raihana Syahirah [1 ]
Faizal, M. A. [1 ]
Noh, Zul Azri Muhamad [1 ]
Ahmad, Nurulhuda [2 ]
机构
[1] Univ Tekn Malaysia Melaka UTeM, Fac Informat & Commun Technol, Durian Tunggal 76100, Melaka, Malaysia
[2] Univ Kebangsaan Malaysia, Fac Engn & Built Environm, Bangi 43600, Malaysia
关键词
Botnets; P2P Botnets; Signature; Rule-based;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Internet is a most salient services in communication. Thus, companies take this opportunity by putting critical resources online for effective business organization. This has given rise to activities of cyber criminals actuated by botnets. P2P networks had gained popularity through distributed applications such as file-sharing, web caching and network storage whereby it is not easy to guarantee that the file exchanged not the malicious in non-centralized authority of P2P networks. For this reason, these networks become the suitable venue for malicious software to spread. It is straightforward for attackers to target the vulnerable hosts in existing P2P networks as bot candidates and build their zombie army. They can be used to compromise a host and make it become a P2P bot. In order to detect these botnets, a complete flow analysis is necessary. In this paper, we proposed an automated P2P botnets through rule-based detection approach which currently focuses on P2P signature illumination. We consider both of synchronisation within a botnets and the malicious behaviour each bot exhibits at the host or network level to recognize the signature and activities in P2P botnets traffic. The rule-based approach have high detection accuracy and low false positive.
引用
收藏
页码:131 / 135
页数:5
相关论文
共 50 条
  • [21] Improve the Influence of Sybil Nodes in P2P Botnets
    Liu Hui
    Wang Tianzuo
    Xiao Fengtao
    Lu Qiang
    PROCEEDINGS OF 2015 4TH INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND NETWORK TECHNOLOGY (ICCSNT 2015), 2015, : 893 - 897
  • [22] Rapid detection technique for P2P-based botnets
    Yu, Ge
    Yu, Xiao-Cong
    Dong, Xiao-Mei
    Qin, Yu-Hai
    Dongbei Daxue Xuebao/Journal of Northeastern University, 2010, 31 (12): : 1709 - 1712
  • [23] Fuzzy Based Approach for P2P File Sharing Detection
    Chen, Jian-Bo
    JOURNAL OF INTERNET TECHNOLOGY, 2011, 12 (06): : 921 - 929
  • [24] Enhanced P2P Botnets Detection Framework Architecture with Hybrid Analyzer: Host-based and Network-based
    Abdullah, Raihana Syahirah
    Faizal, M. A.
    Noh, Zul Azri Muhamad
    Rahayu, Siti Selamat
    Mas'ud, Mohd Zaki
    Sahib, Shahrin
    2013 9TH INTERNATIONAL CONFERENCE ON INFORMATION ASSURANCE AND SECURITY (IAS), 2013, : 72 - 77
  • [25] PeerFox: Detecting Parasite P2P Botnets in their Waiting Stage
    Priyanka
    Dave, Mayank
    2015 INTERNATIONAL CONFERENCE ON SIGNAL PROCESSING, COMPUTING AND CONTROL (ISPCC), 2015, : 350 - 355
  • [26] BoobyTrap: On Autonomously Detecting and Characterizing Crawlers in P2P Botnets
    Karuppayah, Shankar
    Vasilomanolakis, Emmanouil
    Haas, Steffen
    Muehlhaeuser, Max
    Fischer, Mathias
    2016 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2016,
  • [27] P2P based intrusion detection
    Czirkos, Zoltan
    Hosszu, Gabor
    INFOCOMMUNICATIONS JOURNAL, 2009, 1 (01): : 3 - 10
  • [28] Poster: Challenges of Accurately Measuring Churn in P2P Botnets
    Boeck, Leon
    Karuppayah, Shankar
    Fong, Kory
    Muehlhaeuser, Max
    Vasilomanolakis, Emmanouil
    PROCEEDINGS OF THE 2019 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (CCS'19), 2019, : 2661 - 2663
  • [29] Advanced P2P multiprotocol traffic analysis based on application level signature detection
    Bleul, Holger
    Rathgeb, Erwin P.
    Zilling, Stefan
    NETWORKS 2006, 12TH INTERNATIONAL TELECOMMUNICATIONS NETWORK STRATEGY AND PLANNING SYMPOSIUM, 2006, : 89 - +
  • [30] A Closer Look at the HTTP and P2P Based Botnets from a Detector's Perspective
    Haddadi, Fariba
    Zincir-Heywood, A. Nur
    FOUNDATIONS AND PRACTICE OF SECURITY (FPS 2015), 2016, 9482 : 212 - 228