首页> 外文期刊>International journal of internet protocol technology >Detecting and blocking P2P botnets through contact tracing chains
【24h】

Detecting and blocking P2P botnets through contact tracing chains

机译:通过联系跟踪链检测和阻止P2P僵尸网络

获取原文
获取原文并翻译 | 示例
获取外文期刊封面目录资料

摘要

Peer-to-peer (P2P) botnets have recently become serious security threats on the internet. It is difficult to detect the propagation of P2P botnets by isolated monitoring on individual machines due to its decentralised control structure. In this paper, we propose a contact tracing chain-based framework to detect and block P2P botnets by tracing contact behaviours among peers. In the proposed framework, the contacts of peers with suspicious symptoms are traced and tracing chains are established to correlate contacts among peers with their abnormal symptoms. Peers are confirmed with infections when the length of contact tracing chain that they belong to reaches a preset threshold. Under this framework, we develop different detection, tracing and immunisation strategies. Through numerical simulations, we demonstrate that the proposed contact tracing framework can quickly detect and block the propagation of P2P botnets.
机译:对等(P2P)僵尸网络最近已成为Internet上的严重安全威胁。由于P2P僵尸网络的分散控制结构,因此很难通过在单个计算机上进行隔离监视来检测P2P僵尸网络的传播。在本文中,我们提出了一种基于联系跟踪链的框架,通过跟踪同伴之间的联系行为来检测和阻止P2P僵尸网络。在提出的框架中,对具有可疑症状的对等体的联系人进行跟踪,并建立跟踪链,以将对等体之间的联系人与其异常症状相关联。当对等体所属的跟踪链的长度达到预设阈值时,对等体被确认为感染。在此框架下,我们开发了不同的检测,追踪和免疫策略。通过数值模拟,我们证明了所提出的联系跟踪框架可以快速检测和阻止P2P僵尸网络的传播。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号