Detailed Information

Cited 0 time in webofscience Cited 0 time in scopus
Metadata Downloads

A method for risk measurement of botnet's malicious activities

Full metadata record
DC Field Value Language
dc.contributor.authorKim, D.-
dc.contributor.authorKim, Y.-G.-
dc.contributor.authorIn, H.P.-
dc.contributor.authorJeong, H.C.-
dc.date.accessioned2021-09-05T16:10:24Z-
dc.date.available2021-09-05T16:10:24Z-
dc.date.created2021-06-17-
dc.date.issued2014-
dc.identifier.issn1343-4500-
dc.identifier.urihttps://scholar.korea.ac.kr/handle/2021.sw.korea/100817-
dc.description.abstractA DNS sinkhole system generates, separates, and manages a blacklist of botnets detected via a botnet detection system. Since numerous bots are newly added and bot codes are updated frequently, blacklist management is extremely expensive and it is difficult to update domain names and IP addresses. Further, effectiveness and accuracy are not guaranteed as the priority of botnets is determined and handled on the basis of subjective decisions of security experts. Hence, this study aims to provide a methodology to manage the blacklist by estimating the botnet risk index (BRI) of detected botnets from the perspective of a DNS sinkhole system manager and automatically estimating the risk priority of botnets on the basis of this information. The BRI, which is a normalization equation based on a Euclidean vector concept, is calculated in a number of scenarios, with a single command and control server (C&C) and with multiple C&Cs. The BRI has been defined to provide an intuitive understanding of the degree of danger posed by botnets. © 2014 International Information Institute.-
dc.languageEnglish-
dc.language.isoen-
dc.publisherInternational Information Institute Ltd.-
dc.titleA method for risk measurement of botnet's malicious activities-
dc.typeArticle-
dc.contributor.affiliatedAuthorIn, H.P.-
dc.identifier.scopusid2-s2.0-84899694218-
dc.identifier.bibliographicCitationInformation (Japan), v.17, no.1, pp.165 - 180-
dc.relation.isPartOfInformation (Japan)-
dc.citation.titleInformation (Japan)-
dc.citation.volume17-
dc.citation.number1-
dc.citation.startPage165-
dc.citation.endPage180-
dc.type.rimsART-
dc.type.docTypeArticle-
dc.description.journalClass1-
dc.description.journalRegisteredClassscopus-
dc.subject.keywordAuthorBlacklist-
dc.subject.keywordAuthorBotnet Risk Index (BRI)-
dc.subject.keywordAuthorDNS Sinkhole-
dc.subject.keywordAuthorMalicious Activity-
dc.subject.keywordAuthorRisk Measurement-
Files in This Item
There are no files associated with this item.
Appears in
Collections
Graduate School > Department of Computer Science and Engineering > 1. Journal Articles

qrcode

Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.

Related Researcher

Researcher IN, Hoh Peter photo

IN, Hoh Peter
컴퓨터학과
Read more

Altmetrics

Total Views & Downloads

BROWSE