Reconstruction of C&C Channel for Structured P2P Botnet

04/10/2019
by   Mohammad Jafari Dehkordi, et al.
0

Botnets are problematic malware and a big challenge for researchers who have always been unsuccessful in preventing their attacks. Not only have P2P botnets increased the robustness of C&C channels, they have also made the detection of botmaster harder. In this paper the topologies of C&C channel of P2P botnets are reconstructed for an easier containment of P2P botnets and for helping the investigator with his guessing in the detection of command issuing sources. In the method presented in this paper, the connections between nodes are estimated by collecting receiving times of several cascades and by having random network parameters of C&C channel. In the simulation of structured P2P botnet, by collecting the receiving times of 22 cascades in a 1000-member network with mean node degree 50, our method accurately estimates more than 90 of the edges. If the receiving times of just half of the nodes are collected, by having 95 cascades, this recall is obtained.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
06/10/2019

Latent Channel Networks

Latent Euclidean embedding models a given network by representing each n...
research
02/29/2020

Improving Sustainability of Cryptocurrency Payment Networks for IoT Applications

Blockchain-based cryptocurrencies received a lot of attention recently f...
research
07/22/2021

Low latency allcast over broadcast erasure channels

Consider n nodes communicating over an unreliable broadcast channel. Eac...
research
02/16/2020

Congestion Attacks in Payment Channel Networks

Payment channel networks provide a fast and scalable solution to relay f...
research
02/25/2018

Model of a motion of substance in a channel of a network consisting of two arms

We study the problem of the motion of substance in a channel of a networ...
research
11/14/2021

Combinatorial Algorithms for Rooted Prize-Collecting Walks and Applications to Orienteering and Minimum-Latency Problems

We consider the rooted prize-collecting walks (PCW) problem, wherein we ...
research
01/08/2020

Explosive Material Detection and Security Alert System (e-DASS)

The terrorism rate in Pakistan becomes higher even after the advancement...

Please sign up or login with your details

Forgot password? Click here to reset