ETRI-Knowledge Sharing Plaform

KOREAN
논문 검색
Type SCI
Year ~ Keyword

Detail

Conference Paper Study of Host-Based Cyber Attack Precursor Symptom Detection Algorithm
Cited 0 time in scopus Share share facebook twitter linkedin kakaostory
Authors
Jae-Gu Song, Jong Hyun Kim, Dong Il Seo, Woo Young Soh, Seok Soo Kim
Issue Date
2010-12
Citation
International Conference on Future Generation Communication and Networking (FGCN) 2010 (CCIS 120), v.120, pp.268-275
Publisher
Springer
Language
English
Type
Conference Paper
DOI
https://dx.doi.org/10.1007/978-3-642-17604-3_32
Abstract
Botnet-based cyber attacks cause large-scale damage with increasingly intelligent tools, which has called for varied research on bot detection. In this study, we developed a method of monitoring behaviors of host-based processes from the point that a bot header attempts to make zombie PCs, detecting cyber attack precursor symptoms. We designed an algorithm that figures out characteristics of botnet which attempts to launch malicious behaviors by means of signature registration, which is for process/reputation/network traffic/packet/source analysis and a white list, as a measure to respond to bots from the end point. © 2010 Springer-Verlag Berlin Heidelberg.
KSP Keywords
Bot Detection, Cyber attacks, Detection algorithm, Host-based, Intelligent tools, Network Traffic, Source analysis, end point, large-scale