首页> 外文OA文献 >Large Scale DNS Traffic Analysis of Malicious Internet Activity with a Focus on Evaluating the Response Time of Blocking Phishing Sites
【2h】

Large Scale DNS Traffic Analysis of Malicious Internet Activity with a Focus on Evaluating the Response Time of Blocking Phishing Sites

机译:针对恶意Internet活动的大规模DNS流量分析,重点是评估阻止网络钓鱼站点的响应时间

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

This thesis explores four research areas that are examined using DNS traffic analysis. The tools used for this analysis are presented first. The four topics examined are domain mapping, response time of anti-phishing block lists to find the phishing sites, automated identification of malicious fast-flux hosting domains, and identification of distributed denial of service attacks. The first three approaches yielded successful results, and the fourth yields primarily negative lessons for using DNS traffic analysis in such a scenario. Much of the analysis concerns the anti-phishing response time, which has yielded tentative results. It is found that there is significant overlap between the automatically identified fast-flux sites and those sites on the block list. It appears that domains were being put onto the list approximately 11 hours after becoming active, in the median case, which is very nearly the median lifetime of a phishing site. More recently collected data indicates that this result is extremely difficult to verify. While further work is necessary to verify these claims, the initial indication is that finding and listing phishing sites is the bottleneck in propagating data to protect consumers from malicious phishing sites.
机译:本文探讨了使用DNS流量分析检查的四个研究领域。首先介绍用于此分析的工具。检查的四个主题是域映射,反网络钓鱼阻止列表的响应时间(用于查找网络钓鱼站点),自动识别恶意快速通量托管域以及识别分布式拒绝服务攻击。前三种方法产生了成功的结果,而第四种方法主要产生了在这种情况下使用DNS流量分析的负面教训。许多分析都与反网络钓鱼响应时间有关,该时间已经产生了初步的结果。发现自动识别的快速通量站点与阻止列表中的站点之间存在明显的重叠。在中值的情况下,似乎域名在活跃后约11小时被列入列表,这几乎是网络钓鱼站点的中值寿命。最近收集的数据表明,此结果极难验证。尽管需要进一步的工作来验证这些声明,但最初的迹象表明,查找和列出网络钓鱼站点是传播数据以保护消费者免受恶意网络钓鱼站点侵害的瓶颈。

著录项

  • 作者

    Spring Jonathan M.;

  • 作者单位
  • 年度 2010
  • 总页数
  • 原文格式 PDF
  • 正文语种 en
  • 中图分类

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号