首页> 外文会议>USENIX Security Symposium >All Your iFRAMES Point to Us
【24h】

All Your iFRAMES Point to Us

机译:您所有的iFRAMES都指向我们

获取原文

摘要

As the web continues to play an ever increasing role in information exchange, so too is it becoming the prevailing platform for infecting vulnerable hosts. In this paper, we provide a detailed study of the pervasiveness of so-called drive-by downloads on the Internet. Drive-by downloads are caused by URLs that attempt to exploit their visitors and cause malware to be installed and run automatically. Over a period of 10 months we processed billions of URLs, and our results shows that a non-trivial amount, of over 3 million malicious URLs, initiate drive-by downloads. An even more troubling finding is that approximately 1.3% of the incoming search queries to Google's search engine returned at least one URL labeled as malicious in the results page. We also explore several aspects of the drive-by downloads problem. Specifically, we study the relationship between the user browsing habits and exposure to malware, the techniques used to lure the user into the malware distribution networks, and the different properties of these networks.
机译:随着Web在信息交换中继续扮演越来越重要的角色,它也正成为感染易受感染主机的主要平台。在本文中,我们对Internet上所谓的过分下载的普遍性进行了详细的研究。偷渡式下载是由尝试利用其访问者并导致恶意软件自动安装并运行的URL引起的。在10个月的时间里,我们处理了数十亿个URL,结果显示,超过300万个恶意URL的数量之多,引发了过分下载。更为令人不安的发现是,在Google搜索引擎中,大约1.3%的传入搜索查询返回了至少一个在结果页中标记为恶意的URL。我们还将探讨偷渡式下载问题的几个方面。具体来说,我们研究了用户浏览习惯与暴露于恶意软件之间的关系,用于诱使用户进入恶意软件分发网络的技术以及这些网络的不同属性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号