2010 Sixth International Conference on Information Assurance and Security 2010
DOI: 10.1109/isias.2010.5604040
|View full text |Cite
|
Sign up to set email alerts
|

Benchmarking IP blacklists for financial botnet detection

Abstract: Every day, hundreds or even thousands of computers are infected with financial malware (i.e. Zeus) that forces them to become zombies or drones, capable of joining massive financial botnets that can be hired by well-organized cybercriminals in order to steal online banking customers' credentials. Despite the fact that detection and mitigation mechanisms for spam and DDoS-related botnets have been widely researched and developed, it is true that the passive nature (i.e. low network traffic, fewer connections) o… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
3
1

Citation Types

0
4
0

Year Published

2010
2010
2020
2020

Publication Types

Select...
3
2
1

Relationship

1
5

Authors

Journals

citations
Cited by 9 publications
(4 citation statements)
references
References 13 publications
0
4
0
Order By: Relevance
“…In previous research [9] we proved that it might be possible to discover IP addresses related to a financial botnet, by combining the information coming from well-known IP blacklists providers. In order to do so, we developed a set of metrics (i.e.…”
Section: Ip Reputation Modulementioning
confidence: 99%
See 3 more Smart Citations
“…In previous research [9] we proved that it might be possible to discover IP addresses related to a financial botnet, by combining the information coming from well-known IP blacklists providers. In order to do so, we developed a set of metrics (i.e.…”
Section: Ip Reputation Modulementioning
confidence: 99%
“…ISPs, law enforcement agencies and financial institutions) through a community-oriented online service. 2) A low-latency reputation system [9] based on IP blacklisting. This system is able to provide a scoring mechanism for determining the trustworthiness of a given IP address based on the quality of different blacklists containing that IP address.…”
Section: ) a Heavily Customized Version Of The Open Sourcementioning
confidence: 99%
See 2 more Smart Citations