Assessing the real-world dynamics of DNS

作者: Andreas Berger , Eduard Natale

DOI: 10.1007/978-3-642-28534-9_1

关键词:

摘要: The DNS infrastructure is a key component of the Internet and thus used by multitude services, both legitimate malicious. Recently, several works demonstrated that malicious activity usually exhibits observable dynamics may be exploited for detection mitigation. Clearly, reliable differentiation requires to not show these dynamics. In this paper, we often case, propose set stability metrics help efficiently categorize diverse sites.

参考文章(5)
Roberto Perdisci, David Dagon, Manos Antonakakis, Nick Feamster, Wenke Lee, Building a dynamic reputation system for DNS usenix security symposium. pp. 18- 18 ,(2010)
Leyla Bilge, Engin Kirda, Christopher Kruegel, Marco Balduzzi, EXPOSURE : Finding malicious domains using passive DNS analysis network and distributed system security symposium. ,(2011)
Burton H. Bloom, Space/time trade-offs in hash coding with allowable errors Communications of the ACM. ,vol. 13, pp. 422- 426 ,(1970) , 10.1145/362686.362692
Xin Hu, Matthew Knysz, Kang G. Shin, Measurement and analysis of global IP-usage patterns of fast-flux botnets international conference on computer communications. pp. 2633- 2641 ,(2011) , 10.1109/INFCOM.2011.5935091
Roberto Perdisci, David Dagon, Manos Antonakakis, Nikolaos Vasiloglou, Wenke Lee, Detecting malware domains at the upper DNS hierarchy usenix security symposium. pp. 27- 27 ,(2011)