کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
4956075 1444384 2016 20 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
Survey of approaches and features for the identification of HTTP-based botnet traffic
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
پیش نمایش صفحه اول مقاله
Survey of approaches and features for the identification of HTTP-based botnet traffic
چکیده انگلیسی
Botnet use is on the rise, with a growing number of botmasters now switching to the HTTP-based C&C infrastructure. This offers them more stealth by allowing them to blend in with benign web traffic. Several works have been carried out aimed at characterising or detecting HTTP-based bots, many of which use network communication features as identifiers of botnet behaviour. In this paper, we present a survey of these approaches and the network features they use in order to highlight how botnet traffic is currently differentiated from normal traffic. We classify papers by traffic types, and provide a breakdown of features by protocol. In doing so, we hope to highlight the relationships between features at the application, transport and network layers.
ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Journal of Network and Computer Applications - Volume 76, December 2016, Pages 1-15
نویسندگان
, , , ,