Performance Evaluation of DCA and SRC on a Single Bot Detection

04/22/2010
by   Yousof Al-Hammadi, et al.
0

Malicious users try to compromise systems using new techniques. One of the recent techniques used by the attacker is to perform complex distributed attacks such as denial of service and to obtain sensitive data such as password information. These compromised machines are said to be infected with malicious software termed a "bot". In this paper, we investigate the correlation of behavioural attributes such as keylogging and packet flooding behaviour to detect the existence of a single bot on a compromised machine by applying (1) Spearman's rank correlation (SRC) algorithm and (2) the Dendritic Cell Algorithm (DCA). We also compare the output results generated from these two methods to the detection of a single bot. The results show that the DCA has a better performance in detecting malicious activities.

READ FULL TEXT
research
01/13/2010

DCA for Bot Detection

Ensuring the security of computers is a non-trivial task, with many tech...
research
02/05/2010

Detecting Bots Based on Keylogging Activities

A bot is a piece of software that is usually installed on an infected ma...
research
04/16/2010

Behavioural Correlation for Detecting P2P Bots

In the past few years, IRC bots, malicious programs which are remotely c...
research
05/22/2018

A Survey on Malicious Domains Detection through DNS Data Analysis

Malicious domains are one of the major resources required for adversarie...
research
03/14/2018

A Game-Theoretic Framework for the Virtual Machines Migration Timing Problem

In a multi-tenant cloud, a number of Virtual Machines (VMs) are collocat...
research
10/06/2021

Detecting and Quantifying Malicious Activity with Simulation-based Inference

We propose the use of probabilistic programming techniques to tackle the...
research
04/11/2018

Detecting Malicious PowerShell Commands using Deep Neural Networks

Microsoft's PowerShell is a command-line shell and scripting language th...

Please sign up or login with your details

Forgot password? Click here to reset