{"title":"Defence against Botnets: A Formal Definition and a General Framework","authors":"Lei Cao, Xiaofeng Qiu","doi":"10.1109/NAS.2013.37","DOIUrl":null,"url":null,"abstract":"Botnets have contributed to the significant part of the increasing malicious activities such as Distributed Denial of Service (DDoS), spam, and click fraud. Based on the analysis on the basic and essential characters of botnet, this paper deals with the botnet in two aspects: formal definition and general framework, covering various types of botnets overall. Through the formal definition and the general framework, the essential components of the botnet (i.e. botmaster, Command and Control mechanism, and bots) are described in detail and the features of the vital Command and Control (C&C) mechanism are augmented. The formal definition for botnet, to the best of our knowledge, is first proposed and the general framework, analyzed in some case studies, is not only helpful to interpret the existing botnets in the real world, but also beneficial to the implement of the potential botnets in the future.","PeriodicalId":213334,"journal":{"name":"2013 IEEE Eighth International Conference on Networking, Architecture and Storage","volume":"10 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2013-07-17","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"8","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2013 IEEE Eighth International Conference on Networking, Architecture and Storage","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/NAS.2013.37","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 8
Abstract
Botnets have contributed to the significant part of the increasing malicious activities such as Distributed Denial of Service (DDoS), spam, and click fraud. Based on the analysis on the basic and essential characters of botnet, this paper deals with the botnet in two aspects: formal definition and general framework, covering various types of botnets overall. Through the formal definition and the general framework, the essential components of the botnet (i.e. botmaster, Command and Control mechanism, and bots) are described in detail and the features of the vital Command and Control (C&C) mechanism are augmented. The formal definition for botnet, to the best of our knowledge, is first proposed and the general framework, analyzed in some case studies, is not only helpful to interpret the existing botnets in the real world, but also beneficial to the implement of the potential botnets in the future.
僵尸网络对越来越多的恶意活动,如分布式拒绝服务(DDoS)、垃圾邮件和点击欺诈做出了重要贡献。本文在分析僵尸网络的基本特征和本质特征的基础上,从形式化定义和总体框架两个方面对僵尸网络进行了研究,全面涵盖了各种类型的僵尸网络。通过正式定义和总体框架,详细描述了僵尸网络的基本组成部分(即botmaster、Command and Control mechanism和bots),并增强了至关重要的Command and Control (C&C)机制的特征。本文首先提出了僵尸网络的正式定义,并在一些案例研究中分析了僵尸网络的一般框架,这不仅有助于解释现实世界中现有的僵尸网络,而且有利于未来潜在僵尸网络的实现。