A Pipeline for DNS-Based Software Fingerprinting

08/15/2022
by   Sebastian Schäfer, et al.
0

In this paper, we present the modular design and implementation of DONUT, a novel tool for identifying software running on a device. Our tool uses a rule-based approach to detect software-specific DNS fingerprints (stored in an easily extendable database) in passively monitored DNS traffic. We automated the rule extraction process for DONUT with the help of ATLAS, a novel tool we developed for labeling network traffic by the software that created it. We demonstrate the functionality of our pipeline by generating rules for a number of applications, evaluate the performance as well as scalability of the analysis, and confirm the functional correctness of DONUT using an artificial data set for which the ground-truth is known. In addition, we evaluate DONUT's analysis results on a large real-world data set with unknown ground truth.

READ FULL TEXT

page 8

page 9

research
03/09/2021

gambit – An Open Source Name Disambiguation Tool for Version Control Systems

Name disambiguation is a complex but highly relevant challenge whenever ...
research
06/15/2013

iCub World: Friendly Robots Help Building Good Vision Data-Sets

In this paper we present and start analyzing the iCub World data-set, an...
research
05/04/2017

A Finite State and Rule-based Akshara to Prosodeme (A2P) Converter in Hindi

This article describes a software module called Akshara to Prosodeme (A2...
research
10/22/2020

Malware Traffic Classification: Evaluation of Algorithms and an Automated Ground-truth Generation Pipeline

Identifying threats in a network traffic flow which is encrypted is uniq...
research
04/06/2022

AutoCOR: Autonomous Condylar Offset Ratio Calculator on TKA-Postoperative Lateral Knee X-ray

The postoperative range of motion is one of the crucial factors indicati...
research
11/19/2020

ReAssert: Deep Learning for Assert Generation

The automated generation of test code can reduce the time and effort req...
research
05/10/2023

A Deep Dive into NFT Rug Pulls

NFT rug pull is one of the most prominent type of scam that the develope...

Please sign up or login with your details

Forgot password? Click here to reset