Detecting Malicious Fast-Flux Domains Using Feature-based Classification Techniques,ERICDATA高等教育知識庫
高等教育出版
熱門: 王善边  崔雪娟  黃光男  朱丽彬  王美玲  黃乃熒  
高等教育出版
首頁 臺灣期刊   學校系所   學協會   民間出版   大陸/海外期刊   政府機關   學校系所   學協會   民間出版   DOI註冊服務
閱讀全文
篇名
Detecting Malicious Fast-Flux Domains Using Feature-based Classification Techniques
並列篇名
Detecting Malicious Fast-Flux Domains Using Feature-based Classification Techniques
作者 Dinh-Tu TruongDac-Tot TranBao Huynh
英文摘要
In recent years, new generation botnets tend to use an evasion technique based on Domain Name System (DNS) called Fast-Flux Service Network (FFSN) to hide the actual location of their malicious servers. Detection of FFSN continues to be a challenging issue because of the similar behavior between FFSN and other legitimate infrastructures, such as Content Delivery Networks (CDNs) and Round Robin Domain Name System (RRDNS). In this paper, we present a novel approach based on analyzing the passive DNS traffic traces to detect malicious FFSNs. By analyzing DNS traces, we extracted ten key features and employed on the popular machine learning algorithms to build classifiers aim to classify a domain as either malicious flux service or legitimate. The seven among the ten features are first introduced in this study. The effectiveness of selected features is illustrated by comparing the distribution of 95% confidence interval for the mean and standard errors between legit, malware and fast-flux domain names on each feature. The statistical results show that there are discernible biases in the distribution of the feature values between benign and malicious domain names. The experimental results show that our proposed approach achieves the higher detection accuracy and lower false positive rate than the previous methods.
起訖頁 1061-1072
關鍵詞 Domain-fluxDGA-based botnetMalicious domainsBotnet detection
刊名 網際網路技術學刊  
期數 202007 (21:4期)
出版單位 台灣學術網路管理委員會
DOI 10.3966/160792642020072104015   複製DOI
QR Code
該期刊
上一篇
Using Dynamic Passwords for the Exchange and Sharing of Personal Health Records: A Reliable User Authentication Scheme
該期刊
下一篇
Reputation-oriented Electronic Micro-loaning Based on Smart Contract in a Solidarity Group

高等教育知識庫  閱讀計畫  教育研究月刊  新書優惠  

教師服務
合作出版
期刊徵稿
聯絡高教
高教FB
讀者服務
圖書目錄
教育期刊
訂購服務
活動訊息
數位服務
高等教育知識庫
國際資料庫收錄
投審稿系統
DOI註冊
線上購買
高點網路書店 
元照網路書店
博客來網路書店
教育資源
教育網站
國際教育網站
關於高教
高教簡介
出版授權
合作單位
知識達 知識達 知識達 知識達 知識達 知識達
版權所有‧轉載必究 Copyright2011 高等教育文化事業股份有限公司  All Rights Reserved
服務信箱:edubook@edubook.com.tw 台北市館前路 26 號 6 樓 Tel:+886-2-23885899 Fax:+886-2-23892500