首页> 外文会议>The Fourth International Conference on Emerging Security Information Systems and Technologies >Defaming Botnet Toolkits: A Bottom-Up Approach to Mitigating the Threat
【24h】

Defaming Botnet Toolkits: A Bottom-Up Approach to Mitigating the Threat

机译:破坏僵尸网络工具包:一种自下而上的缓解威胁的方法

获取原文

摘要

Botnets have become one of the most prevailing threats to todayȁ9;s Internet partly due to the underlying economic incentives of operating one. Botnet toolkits sold by their authors allow any layman to generate his/her own customized botnet and become a botmaster; botnet services sold by botmasters allow any criminal to steal identities and credit card information; finally, such stolen credentials are sold to end-users to make unauthorized transactions. Many existing botnet countermeasures meet inherent difficulties when they choose to target the botmasters or authors of toolkits, because those at the highest levels of this food chain are also the most technology-savvy and elusive. In this paper, we propose a different, bottom-up approach. That is, we defame botnet toolkits through discouraging or prosecuting the end-users of the stolen credentials. To make the concept concrete, we present a case study of applying the approach to a popular botnet toolkit, Zeus, with two methodologies, namely, reverse engineering and behavioural analysis.
机译:僵尸网络已成为当今9互联网上最主要的威胁之一,部分原因是运营这种网络的潜在经济诱因。他们的作者出售的僵尸网络工具包允许任何外行生成他/她自己的定制僵尸网络并成为僵尸管理员。僵尸网络管理员出售的僵尸网络服务允许任何犯罪分子窃取身份和信用卡信息;最终,这些被盗的凭证被出售​​给最终用户以进行未经授权的交易。许多现有的僵尸网络对策在选择针对工具箱的僵尸程序管理员或作者时遇到了固有的困难,因为在此食物链中最高级别的僵尸程序也最精通技术且难以捉摸。在本文中,我们提出了一种不同的,自下而上的方法。也就是说,我们通过阻止或起诉最终用户所窃取的凭证来诽谤僵尸网络工具包。为了使这个概念具体化,我们提供了一个案例研究,将这种方法应用到流行的僵尸网络工具包Zeus中,并采用了两种方法,即逆向工程和行为分析。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号