首页> 外文学位 >Stepping Up the Cybersecurity Game: Protecting Online Services from Malicious Activity.
【24h】

Stepping Up the Cybersecurity Game: Protecting Online Services from Malicious Activity.

机译:加强网络安全游戏:保护在线服务免受恶意活动的侵害。

获取原文
获取原文并翻译 | 示例

摘要

The rise in popularity of online services such as social networks, web-based emails, and blogs has made them a popular platform for attackers. Cybercriminals leverage such services to spread spam, malware, and steal personal information from their victims. In a typical cybercriminal operation, miscreants first infect their victims' machines with malicious software and have them join a botnet, which is a network of compromised computers. In the second step, the infected machines are often leveraged to connect to legitimate online services and perform malicious activities.;As a consequence, online services receive activity from both legitimate and malicious users. However, while legitimate users use these services for the purposes they were designed for, malicious parties exploit them for their illegal actions, which are often linked to an economic gain. In this thesis, I show that the way in which malicious users and legitimate ones interact with Internet services presents differences. I then develop mitigation techniques that leverage such differences to detect and block malicious parties that misuse Internet services.;As examples of this research approach, I first study the problem of spamming botnets, which are misused to send hundreds of millions of spam emails to mailservers spread across the globe. I show that botmasters typically split a list of victim email addresses among their bots, and that it is possible to identify bots belonging to the same botnet by enumerating the mailservers that are contacted by IP addresses over time. I developed a system, called BotMagnifier, which learns the set of mailservers contacted by the bots belonging to a certain botnet, and finds more bots belonging to that same botnet.;I then study the problem of misused accounts on online social networks. I first look at the problem of fake accounts that are set up by cybercriminals to spread malicious content. I study the modus operandi of the cybercriminals controlling such accounts, and I then develop a system to automatically flag a social network accounts as fake. I then look at the problem of legitimate accounts getting compromised by miscreants, and I present COMPA, a system that learns the typical habits of social network users and considers messages that deviate from the learned behavior as possible compromises.;As a last example, I present EvilCohort, a system that detects communities of online accounts that are accessed by the same botnet. EvilCohort works by clustering together accounts that are accessed by a common set of IP addresses, and can work on any online service that requires the use of accounts (social networks, web-based emails, blogs, etc.).
机译:诸如社交网络,基于Web的电子邮件和博客之类的在线服务越来越流行,这使它们成为攻击者的流行平台。网络罪犯利用此类服务​​传播垃圾邮件,恶意软件并从受害者那里窃取个人信息。在典型的网络犯罪操作中,不法分子首先用恶意软件感染受害者的计算机,然后让他们加入僵尸网络,该僵尸网络是受感染计算机的网络。第二步,通常利用受感染的计算机连接到合法的在线服务并执行恶意活动。因此,在线服务会同时接收合法用户和恶意用户的活动。但是,当合法用户将这些服务用于其设计目的时,恶意团体却将其用于非法行为,这通常与经济利益有关。在本文中,我证明了恶意用户和合法用户与Internet服务交互的方式存在差异。然后,我开发利用这种差异的缓解技术,以检测和阻止滥用Internet服务的恶意方。作为该研究方法的示例,我首先研究了垃圾邮件僵尸网络的问题,该僵尸网络被滥用以向邮件服务器发送数亿垃圾邮件。遍布全球。我证明了,僵尸网络管理员通常会在其僵尸网络之间分割受害者电子邮件地址列表,并且有可能通过枚举IP地址随时间联系的邮件服务器来识别属于同一僵尸网络的僵尸网络。我开发了一个名为BotMagnifier的系统,该系统可了解属于某个僵尸网络的僵尸网络联系的邮件服务器集,并查找属于该僵尸网络的更多僵尸网络。然后,我研究了在线社交网络上帐户滥用的问题。首先,我看一下网络犯罪分子为传播恶意内容而建立的假帐户问题。我研究了控制此类帐户的网络犯罪分子的作案手法,然后开发了一种系统,该系统会自动将社交网络帐户标记为伪造。然后,我研究了合法帐户因不当行为而受到损害的问题,并提出了COMPA,该系统可学习社交网络用户的典型习惯,并将偏离所学行为的消息视为可能的损害。当前的EvilCohort,一种检测由同一僵尸网络访问的在线帐户社区的系统。 EvilCohort通过将可通过一组通用IP地址访问的帐户聚集在一起来进行工作,并且可以在需要使用帐户的任何在线服务(社交网络,基于Web的电子邮件,博客等)上工作。

著录项

  • 作者

    Stringhini, Gianluca.;

  • 作者单位

    University of California, Santa Barbara.;

  • 授予单位 University of California, Santa Barbara.;
  • 学科 Computer Science.;Web Studies.
  • 学位 Ph.D.
  • 年度 2014
  • 页码 248 p.
  • 总页数 248
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号