Frequency Domain Analysis of Large-Scale Proxy Logs for Botnet Traffic Detection

被引:5
|
作者
Bottazzi, Giovanni [1 ]
Italiano, Giuseppe F. [1 ]
Rutigliano, Giuseppe G. [2 ]
机构
[1] Univ Roma Tor Vergata, Dept Civil Engn & Comp Sci, Via Politecn 1, I-00133 Rome, Italy
[2] Univ Roma Tor Vergata, Dept Elect Engn, Via Politecn 1, I-00133 Rome, Italy
关键词
proxy; mining; logs; botnet; frequency domain;
D O I
10.1145/2947626.2947634
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Botnets have become one of the most significant cyber threats over the last decade. The diffusion of the "Internet of Things" and its for-profit exploitation, contributed to botnets spread and sophistication, thus providing real, efficient and profitable criminal cyber-services. Recent research on botnet detection focuses on traffic pattern-based detection, and on analyzing the network traffic generated by the infected hosts, in order to find behavioral patterns independent from the specific payloads, architectures and protocols. In this paper we address the periodic behavioral patterns of infected hosts communicating with their Command-and-Control servers. The main novelty introduced is related to the traffic analysis in the frequency domain without using the well-known Fast Fourier Transform. Moreover, the mentioned analysis is performed through the exploitation of the proxy logs, easily deployable on almost every real-world scenario, from enterprise networks to mobile devices.
引用
收藏
页码:76 / 80
页数:5
相关论文
共 50 条
  • [1] Fast Mining of Large-Scale Logs for Botnet Detection: A Field Study
    Bottazzi, Giovanni
    Italiano, Giuseppe F.
    CIT/IUCC/DASC/PICOM 2015 IEEE INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION TECHNOLOGY - UBIQUITOUS COMPUTING AND COMMUNICATIONS - DEPENDABLE, AUTONOMIC AND SECURE COMPUTING - PERVASIVE INTELLIGENCE AND COMPUTING, 2015, : 1990 - 1997
  • [2] PsyBoG: A scalable botnet detection method for large-scale DNS traffic
    Kwon, Jonghoon
    Lee, Jehyun
    Lee, Heejo
    Perrig, Adrian
    COMPUTER NETWORKS, 2016, 97 : 48 - 73
  • [3] Incremental Analysis of Large-Scale System Logs for Anomaly Detection
    Astekin, Merve
    Ozcan, Selim
    Sozer, Hasan
    2019 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2019, : 2119 - 2127
  • [4] VegaStar: An Illegal Domain Detection System on Large-scale Video Traffic
    Tian, Xiang
    Zhu, Yujia
    Li, Zhao
    Zheng, Chao
    Sun, Yong
    Liu, Qingyun
    2018 17TH IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (IEEE TRUSTCOM) / 12TH IEEE INTERNATIONAL CONFERENCE ON BIG DATA SCIENCE AND ENGINEERING (IEEE BIGDATASE), 2018, : 783 - 789
  • [5] Detection of Botnet Activities Through the Lens of a Large-Scale Darknet
    Ban, Tao
    Zhu, Lei
    Shimamura, Jumpei
    Pang, Shaoning
    Inoue, Daisuke
    Nakao, Koji
    NEURAL INFORMATION PROCESSING, ICONIP 2017, PT V, 2017, 10638 : 442 - 451
  • [6] DILAF: A framework for distributed analysis of large-scale system logs for anomaly detection
    Astekin, Merve
    Zengin, Harun
    Sozer, Hasan
    SOFTWARE-PRACTICE & EXPERIENCE, 2019, 49 (02): : 153 - 170
  • [7] Full Cycle Analysis of a Large-scale Botnet Attack on Twitter
    Besel, Christoph
    Echeverria, Juan
    Zhou, Shi
    2018 IEEE/ACM INTERNATIONAL CONFERENCE ON ADVANCES IN SOCIAL NETWORKS ANALYSIS AND MINING (ASONAM), 2018, : 170 - 177
  • [8] Large-Scale Traffic Anomaly Detection: Analysis of Real Netflow Datasets
    Spognardi, Angelo
    Villani, Antonio
    Vitali, Domenico
    Mancini, Luigi Vincenzo
    Battistoni, Roberto
    E-BUSINESS AND TELECOMMUNICATIONS, ICETE 2012, 2014, 455 : 192 - 208
  • [9] IRC traffic analysis for botnet detection
    Mazzariello, Claudio
    FOURTH INTERNATIONAL SYMPOSIUM ON INFORMATION ASSURANCE AND SECURITY, PROCEEDINGS, 2008, : 318 - 323
  • [10] A Fast and Scalable Method for Threat Detection in Large-scale DNS Logs
    Begleiter, Ron
    Elovici, Yuval
    Hollander, Yona
    Mendelson, Ori
    Rokach, Lior
    Saltzman, Roi
    2013 IEEE INTERNATIONAL CONFERENCE ON BIG DATA, 2013,