您的位置: 专家智库 > >

国家自然科学基金(61300242)

作品数:1 被引量:0H指数:0
发文基金:国家自然科学基金国家重点基础研究发展计划更多>>
相关领域:自动化与计算机技术更多>>

文献类型

  • 1篇中文期刊文章

领域

  • 1篇自动化与计算...

主题

  • 1篇P2
  • 1篇EMAIL
  • 1篇EVASIO...
  • 1篇LEARNI...
  • 1篇MALWAR...
  • 1篇BOTNET

传媒

  • 1篇China ...

年份

  • 1篇2018
1 条 记 录,以下是 1-1
排序方式:
A Learning Evasive Email-Based P2P-Like Botnet
2018年
Nowadays, machine learning is widely used in malware detection system as a core component. The machine learning algorithm is designed under the assumption that all datasets follow the same underlying data distribution. But the real-world malware data distribution is not stable and changes with time. By exploiting the knowledge of the machine learning algorithm and malware data concept drift problem, we show a novel learning evasive botnet architecture and a stealthy and secure C&C mechanism. Based on the email communication channel, we construct a stealthy email-based P2 P-like botnet that exploit the excellent reputation of email servers and a huge amount of benign email communication in the same channel. The experiment results show horizontal correlation learning algorithm is difficult to separate malicious email traffic from normal email traffic based on the volume features and time-related features with enough confidence. We discuss the malware data concept drift and possible defense strategies.
Zhi WangMeilin QinMengqi ChenChunfu JiaYong Ma
关键词:MALWAREBOTNET
共1页<1>
聚类工具0