download0 view878
twitter facebook

공공누리This item is licensed Korea Open Government License

dc.contributor.author
최장원
dc.contributor.author
박학수
dc.contributor.author
최상수
dc.date.accessioned
2019-08-28T07:41:00Z
dc.date.available
2019-08-28T07:41:00Z
dc.date.issued
2011-07-18
dc.identifier.issn
1343-4500
dc.identifier.uri
https://repository.kisti.re.kr/handle/10580/13946
dc.identifier.uri
http://www.ndsl.kr/ndsl/search/detail/article/articleSearchResultDetail.do?cn=NART57941185
dc.description.abstract
Malicious attacks in cyberspace have been continuously increasing. In particular, widely distributed bots are leading the cyber attacks such as distribute denial of service attack, spamming, critical information hijacking. Various technologies for bot detection and response are being developed, DNS-Sinkhole technique is known as the most effective way to respond to bot activities. However, legacy sinkhole system has a variety of limitations such as low accuracy and limited information, because it was developed for detection of early bot technology (IRC bot). In this paper, we propose an advanced bot response mechanism by using enhanced DNS-Sinkhole system. Especially, we focus on the improving of post-processing mechanism based on packet analysis. The proposed mechanism and system allow more efficient bot response by extending detection range and providing high detection accuracy.
dc.language
eng
dc.relation.ispartofseries
Information : an international interdisciplinary journal
dc.title
Advanced Bot Response Mechanism based on DNS Sinkhole
dc.citation.endPage
2521
dc.citation.number
7
dc.citation.startPage
2499
dc.citation.volume
14
dc.subject.keyword
Bot detection
dc.subject.keyword
Packet analysis
dc.subject.keyword
Post-processing technique based on DNS-Sinkhole
Appears in Collections:
7. KISTI 연구성과 > 학술지 발표논문
Files in This Item:
There are no files associated with this item.

Browse