Cloud-based push-styled mobile botnets: a case study of exploiting the cloud to device messaging service

Shuang Zhao, P. Lee, John C.S. Lui, X. Guan, Xiaobo Ma, Jing Tao
{"title":"Cloud-based push-styled mobile botnets: a case study of exploiting the cloud to device messaging service","authors":"Shuang Zhao, P. Lee, John C.S. Lui, X. Guan, Xiaobo Ma, Jing Tao","doi":"10.1145/2420950.2420968","DOIUrl":null,"url":null,"abstract":"Given the popularity of smartphones and mobile devices, mobile botnets are becoming an emerging threat to users and network operators. We propose a new form of cloud-based push-styled mobile botnets that exploits today's push notification services as a means of command dissemination. To motivate its practicality, we present a new command and control (C&C) channel using Google's Cloud to Device Messaging (C2DM) service, and develop a C2DM botnet specifically for the Android platform. We present strategies to enhance its scalability to large botnet coverage and its resilience against service disruption. We prototype a C2DM botnet, and perform evaluation to show that the C2DM botnet is stealthy in generating heartbeat and command traffic, resource-efficient in bandwidth and power consumptions, and controllable in quickly delivering a command to all bots. We also discuss how one may deploy a C2DM botnet, and demonstrate its feasibility in launching an SMS-Spam-and-Click attack. Lastly, we discuss how to generalize the design to other platforms, such as iOS or Window-based systems, and recommend possible defense methods. Given the wide adoption of push notification services, we believe that this type of mobile botnets requires special attention from our community.","PeriodicalId":397003,"journal":{"name":"Asia-Pacific Computer Systems Architecture Conference","volume":"11 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2012-12-03","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"56","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Asia-Pacific Computer Systems Architecture Conference","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/2420950.2420968","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 56

Abstract

Given the popularity of smartphones and mobile devices, mobile botnets are becoming an emerging threat to users and network operators. We propose a new form of cloud-based push-styled mobile botnets that exploits today's push notification services as a means of command dissemination. To motivate its practicality, we present a new command and control (C&C) channel using Google's Cloud to Device Messaging (C2DM) service, and develop a C2DM botnet specifically for the Android platform. We present strategies to enhance its scalability to large botnet coverage and its resilience against service disruption. We prototype a C2DM botnet, and perform evaluation to show that the C2DM botnet is stealthy in generating heartbeat and command traffic, resource-efficient in bandwidth and power consumptions, and controllable in quickly delivering a command to all bots. We also discuss how one may deploy a C2DM botnet, and demonstrate its feasibility in launching an SMS-Spam-and-Click attack. Lastly, we discuss how to generalize the design to other platforms, such as iOS or Window-based systems, and recommend possible defense methods. Given the wide adoption of push notification services, we believe that this type of mobile botnets requires special attention from our community.
基于云的推送式移动僵尸网络:利用云到设备消息传递服务的案例研究
随着智能手机和移动设备的普及,移动僵尸网络正在成为用户和网络运营商的新兴威胁。我们提出了一种基于云的推送式移动僵尸网络的新形式,它利用今天的推送通知服务作为命令传播的手段。为了激发其实用性,我们使用谷歌的云到设备消息(C2DM)服务提出了一个新的命令和控制(C&C)通道,并专门为Android平台开发了一个C2DM僵尸网络。我们提出了一些策略来增强其对大型僵尸网络覆盖的可扩展性和对服务中断的弹性。我们对C2DM僵尸网络进行了原型设计,并进行了评估,以证明C2DM僵尸网络在生成心跳和命令流量方面是隐形的,在带宽和功耗方面是资源高效的,并且在快速向所有机器人发送命令方面是可控的。我们还讨论了如何部署C2DM僵尸网络,并演示了其在发起SMS-Spam-and-Click攻击中的可行性。最后,我们讨论了如何将设计推广到其他平台,如iOS或基于windows的系统,并推荐了可能的防御方法。鉴于推送通知服务的广泛采用,我们认为这种类型的移动僵尸网络需要我们社区的特别关注。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信