257 research outputs found

    Malicious botnet survivability mechanism evolution forecasting by means of a genetic algorithm

    Get PDF
    Botnets are considered to be among the most dangerous modern malware types and the biggest current threats to global IT infrastructure. Botnets are rapidly evolving, and therefore forecasting their survivability strategies is important for the development of countermeasure techniques. The article propose the botnet-oriented genetic algorithm based model framework, which aimed at forecasting botnet survivability mechanisms. The model may be used as a framework for forecasting the evolution of other characteristics. The efficiency of different survivability mechanisms is evaluated by applying the proposed fitness function. The model application area also covers scientific botnet research and modelling tasks. Article in English. Kenkėjiškų botnet tinklų išgyvenamumo mechanizmų evoliucijos prognozavimas genetinio algoritmo priemonėmis Santrauka. Botnet tinklai pripažįstami kaip vieni pavojingiausių šiuolaikinių kenksmingų programų ir vertinami kaip viena iš didžiausių grėsmių tarptautinei IT infrastruktūrai. Botnettinklai greitai evoliucionuoja, todėl jų savisaugos mechanizmų evoliucijos prognozavimas yra svarbus planuojant ir kuriant kontrpriemones. Šiame straipsnyje pateikiamas genetiniu algoritmu pagrįstas modelis, skirtas Botnet tinklų savisaugos mechanizmų evoliucijai prognozuoti, kuris taip pat gali būti naudojamas kaip pagrindas kitų Botnet tinklų savybių evoliucijai modeliuoti. Skirtingi savisaugos mechanizmai vertinami taikant siūlomą tinkamumo funkciją. Raktiniai žodžiai: Botnet; genetinis algoritmas; prognozė; savisauga; evoliucija; modeli

    Unstructured Peer-to-Peer Botnet Simulation for Measuring Its Robustness

    Full text link
    Malware attacks on the Internet have increasedsubstantially in recent years for which botnets are a root cause. A "botnet" is a network of compromised computers controlled by an attacker known as the "botmaster". To be able to effectively detect and defend against botnets, it is very important to have a good understanding of their construction procedure and propagation methodology. In this work, we study the construction of an unstructured peer-to-peer botnet, its propagation methodology, diurnal properties and robustness. This simulation shows that the more frequently a node updates its buddy list, the lesser is the process overhead involved

    Unstructured Peer-to-Peer Botnet Simulation for Measuring Its Robustness

    Get PDF
    Malware attacks on the Internet have increasedsubstantially in recent years for which botnets are a root cause. A "botnet" is a network of compromised computers controlled by an attacker known as the "botmaster". To be able to effectively detect and defend against botnets, it is very important to have a good understanding of their construction procedure and propagation methodology. In this work, we study the construction of an unstructured peer-to-peer botnet, its propagation methodology, diurnal properties and robustness. This simulation shows that the more frequently a node updates its buddy list, the lesser is the process overhead involved

    CAREER: adaptive intrusion detection systems

    Get PDF
    Issued as final reportNational Science Foundation (U.S.