Repository logo
 
Publication

Characterization and modeling of top spam botnets

dc.contributor.authorRodrigues, Nuno G.
dc.contributor.authorSousa, Rui Filipe Rodrigues
dc.contributor.authorSalvador, Paulo
dc.contributor.authorNogueira, António Manuel
dc.date.accessioned2013-01-07T09:59:48Z
dc.date.available2013-01-07T09:59:48Z
dc.date.issued2012
dc.description.abstractThe increasing impact of the Internet in the global economy has transformed Botnets into one of the most relevant security threats for citizens, organizations and governments. Despite the significant efforts that have been made over the last years to understand this phenomenon and develop detection techniques and countermeasures, this continues to be a field with big challenges to address. Several approaches can be taken to study Botnets: analyze its source code, which can be a hard task because it is usually unavailable; study the control mechanism, particularly the activity of its Command and Control server(s); study its behavior, by measuring real traffic and collecting relevant statistics. In this work, we have installed some of the most popular spam Botnets, captured the originated traffic and characterized it in order to identify the main trends/patterns of their activity. From the intensive statistics that were collected, it was possible to conclude that there are distinct features between Botnets that can be explored to build efficient detection methodologies. Based on this study, the second part of the paper proposes a generic and systematic model to describe the network dynamics whenever a Botnet threat is detected, defining all actors, dimensions, states and actions that need to be taken into account at each moment. We believe that this type of modeling approach is the basis for developing systematic and integrated frameworks and strategies to predict and fight Botnet threats in an efficient way.por
dc.description.sponsorshipThis research was supported by Fundação para a Ciência e a Tecnologia, under research project PTDC/EEA-TEL/101880/2008.
dc.identifier.citationRodrigues, Nuno; Sousa, Rui; Salvador, Paulo; Nogueira, António (2012). Characterization and modeling of top spam botnets. Network Protocols and Algorithms. ISSN 1943-3581. 4:4, p. 1-26por
dc.identifier.issn1943-3581
dc.identifier.urihttp://hdl.handle.net/10198/7829
dc.language.isoengpor
dc.peerreviewedyespor
dc.publisherMacrothink Institutepor
dc.subjectSpam botnetpor
dc.subjectStatistical characterizationpor
dc.subjectNetwork securitypor
dc.subjectMalwarepor
dc.subjectNetwork resilience modelpor
dc.titleCharacterization and modeling of top spam botnetspor
dc.typejournal article
dspace.entity.typePublication
oaire.awardURIinfo:eu-repo/grantAgreement/FCT/3599-PPCDT/PTDC%2FEEA-TEL%2F101880%2F2008/PT
oaire.citation.endPage26por
oaire.citation.issueVol. 4, No. 4por
oaire.citation.startPage1por
oaire.citation.titleNetwork Protocols and Algorithmspor
oaire.citation.volumeVol. 4, No. 4por
oaire.fundingStream3599-PPCDT
person.familyNameRodrigues
person.givenNameNuno G.
person.identifier.orcid0000-0002-0471-9501
project.funder.identifierhttp://doi.org/10.13039/501100001871
project.funder.nameFundação para a Ciência e a Tecnologia
rcaap.rightsopenAccesspor
rcaap.typearticlepor
relation.isAuthorOfPublication2327096f-5d50-443d-96b5-69237888d731
relation.isAuthorOfPublication.latestForDiscovery2327096f-5d50-443d-96b5-69237888d731
relation.isProjectOfPublicationffba8885-cf5c-4c53-a6a8-66516ce27628
relation.isProjectOfPublication.latestForDiscoveryffba8885-cf5c-4c53-a6a8-66516ce27628

Files

Original bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
2058-11116-1-PB.pdf
Size:
1.15 MB
Format:
Adobe Portable Document Format
License bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed upon to submission
Description: