Detecting Smart, Self-Propagating Internet Worms

被引:0
|
作者
Li, Jun [1 ]
Stafford, Shad [1 ]
机构
[1] Univ Oregon, Network & Secur Res Lab, Eugene, OR 97403 USA
来源
2014 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS) | 2014年
关键词
Internet worm; smart worm; worm detection; behavior-based worm detection;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Self-propagating worms can infect millions of computers on the Internet in just several minutes. Although there are already many existing worm detectors, none of them systematically consider the countermeasures from worm authors, leaving them potentially ineffective against smart, evasive worms. We therefore revisit worm detection in this paper. We treat worm detection as an arms race, and study how to most effectively detect not only classic worms (i.e. worms that do not have the knowledge of worm detectors), but also evasive worms that know the worm detector in place, know its configurations, and can even adjust their scanning rate by observing legitimate traffic. We describe our design of a new worm detector called SWORD, conduct extensive experiments using realistic trace with different parameters of worms, and demonstrate that SWORD is superior to existing detectors for detecting both classic and evasive worms.
引用
收藏
页码:193 / 201
页数:9
相关论文
共 50 条
  • [41] IGNITION CRITERIA FOR SELF-PROPAGATING COMBUSTION SYNTHESIS
    ZHANG, YS
    STANGLE, GC
    JOURNAL OF MATERIALS RESEARCH, 1993, 8 (07) : 1703 - 1711
  • [42] SELF-PROPAGATING HIGH-TEMPERATURE SYNTHESIS
    CAHN, RW
    ADVANCED MATERIALS, 1990, 2 (6-7) : 314 - 316
  • [43] The self-propagating quasi-monopolar vortex
    Stern, ME
    Radko, T
    JOURNAL OF PHYSICAL OCEANOGRAPHY, 1998, 28 (01) : 22 - 39
  • [44] Modeling self-propagating malware with epidemiological models
    Chernikova, Alesia
    Gozzi, Nicolo
    Perra, Nicola
    Boboila, Simona
    Eliassi-Rad, Tina
    Oprea, Alina
    APPLIED NETWORK SCIENCE, 2023, 8 (01)
  • [45] Recent developments of self-propagating frontal polymerization
    Yan, QZ
    Su, XT
    Ge, CC
    PROGRESS IN CHEMISTRY, 2005, 17 (06) : 1081 - 1088
  • [46] Catalytic diversity in self-propagating peptide assemblies
    Omosun, Tolulope O.
    Hsieh, Ming-Chien
    Childers, W. Seth
    Das, Dibyendu
    Mehta, Anil K.
    Anthony, Neil R.
    Pan, Ting
    Grover, Martha A.
    Berland, Keith M.
    Lynn, David G.
    NATURE CHEMISTRY, 2017, 9 (08) : 805 - 809
  • [47] AN ANALYTIC THEORY OF SELF-PROPAGATING STAR FORMATION
    NEUKIRCH, T
    FEITZINGER, JV
    MONTHLY NOTICES OF THE ROYAL ASTRONOMICAL SOCIETY, 1988, 235 (04) : 1343 - 1359
  • [48] Dimensions of becoming of self-propagating chemical processes
    V. V. Klyucharev
    Doklady Chemistry, 2006, 410 : 158 - 164
  • [49] Detecting Internet Worms Using Data Mining Techniques
    Siddiqui, Muazzam
    Wang, Morgan C.
    Lee, Joohan
    IMETI 2008: INTERNATIONAL MULTI-CONFERENCE ON ENGINEERING AND TECHNOLOGICAL INNOVATION, VOL I, PROCEEDINGS, 2008, : 129 - +
  • [50] Intelligent Failure Connection Algorithm for Detecting Internet Worms
    Rasheed, Mohammad M.
    Norwawi, Norita Md
    Ghazali, Osman
    Kadhum, Mohammed M.
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2009, 9 (05): : 280 - 285