2012
DOI: 10.1007/978-3-642-28641-4_14
|View full text |Cite
|
Sign up to set email alerts
|

Revisiting Botnet Models and Their Implications for Takedown Strategies

Abstract: Abstract. Several works have utilized network models to study peerto-peer botnets, particularly in evaluating the effectiveness of strategies aimed at taking down a botnet. We observe that previous works fail to consider an important structural characteristic of networks -assortativity. This property quantifies the tendency for "similar" nodes to connect to each other, where the notion of "similarity" is examined in terms of node degree. Empirical measurements on networks simulated according to the Waledac bot… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
2
1

Citation Types

1
10
0

Year Published

2013
2013
2020
2020

Publication Types

Select...
6
2

Relationship

0
8

Authors

Journals

citations
Cited by 9 publications
(11 citation statements)
references
References 38 publications
1
10
0
Order By: Relevance
“…We find that most botnet takedowns have limited and transient impacts on global wickedness. This result agrees with other research, which found that botnets are surprisingly resilient [81], and in many cases recover after a short time [54]. Other work has modeled malicious websites, noting the high variance of cybersecurity data, and investigates interventions through modeling [13].…”
Section: Related Worksupporting
confidence: 90%
“…We find that most botnet takedowns have limited and transient impacts on global wickedness. This result agrees with other research, which found that botnets are surprisingly resilient [81], and in many cases recover after a short time [54]. Other work has modeled malicious websites, noting the high variance of cybersecurity data, and investigates interventions through modeling [13].…”
Section: Related Worksupporting
confidence: 90%
“…Davis et al used graph simulations to analyze the impact of bot disinfections on the communication effectiveness of P2P botnets [5]. Recently Yen and Reiter discussed the role of assortative mixing in P2P botnets and its consequences for network resilience and recovery [33]. However, to the best of our knowledge, our work is the first to introduce formal definitions for the systematization of attacks against P2P botnets.…”
Section: Related Workmentioning
confidence: 99%
“…3. Reports from academia and industry have long warned of the high resilience potential of peer-to-peer botnets [4,5,7,19,20]. Through our analysis of the communication protocol and resilience mechanisms of P2P Zeus, we show that highly resilient P2P botnets are now a very real threat.…”
Section: Introductionmentioning
confidence: 93%