The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency
碩士 === 國立虎尾科技大學 === 資訊管理研究所 === 99 === With the progress of the times, network technology brings the convenience and efficiency. It has also brought crime and malicious acts relatively. Today the increasing cyber crime, such as data theft, DDoS attacks, the money mule, spam and phishing, are often h...
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | zh-TW |
Published: |
2011
|
Online Access: | http://ndltd.ncl.edu.tw/handle/kcp727 |
id |
ndltd-TW-099NYPI5396025 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-TW-099NYPI53960252019-09-22T03:40:58Z http://ndltd.ncl.edu.tw/handle/kcp727 The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency 殭屍網路偵測與管理機制之研究-以某公務機關為例 Chung-Shan Kuo 郭忠山 碩士 國立虎尾科技大學 資訊管理研究所 99 With the progress of the times, network technology brings the convenience and efficiency. It has also brought crime and malicious acts relatively. Today the increasing cyber crime, such as data theft, DDoS attacks, the money mule, spam and phishing, are often heard from time to time. Zombie network is the driving force behind the scenes. Public authority network has hundreds of computers. If infected with a zombie botnet network, the government agency suffers huge losses and can not be estimated. This paper attempts to use zombie networks and transmission characteristics to detect bot-like activities in government agency. Using freeware-Open Audit and SharpPcap library to write sniffer for network traffic monitoring, and to provide public warning message when infected. This allows officials to take immediate disposal to prevent further disaster. List of hosts with suspected infection is presented to IT staff by e-mail and web. To avoid damage in botnet experiments, simulation is built and performed on Testbed@TWISC based on the Emulab system. Chang-Shiann Wu 吳昌憲 2011 學位論文 ; thesis 48 zh-TW |
collection |
NDLTD |
language |
zh-TW |
format |
Others
|
sources |
NDLTD |
description |
碩士 === 國立虎尾科技大學 === 資訊管理研究所 === 99 === With the progress of the times, network technology brings the convenience and efficiency. It has also brought crime and malicious acts relatively. Today the increasing cyber crime, such as data theft, DDoS attacks, the money mule, spam and phishing, are often heard from time to time. Zombie network is the driving force behind the scenes. Public authority network has hundreds of computers. If infected with a zombie botnet network, the government agency suffers huge losses and can not be estimated.
This paper attempts to use zombie networks and transmission characteristics to detect bot-like activities in government agency. Using freeware-Open Audit and SharpPcap library to write sniffer for network traffic monitoring, and to provide public warning message when infected. This allows officials to take immediate disposal to prevent further disaster. List of hosts with suspected infection is presented to IT staff by e-mail and web. To avoid damage in botnet experiments, simulation is built and performed on Testbed@TWISC based on the Emulab system.
|
author2 |
Chang-Shiann Wu |
author_facet |
Chang-Shiann Wu Chung-Shan Kuo 郭忠山 |
author |
Chung-Shan Kuo 郭忠山 |
spellingShingle |
Chung-Shan Kuo 郭忠山 The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency |
author_sort |
Chung-Shan Kuo |
title |
The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency |
title_short |
The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency |
title_full |
The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency |
title_fullStr |
The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency |
title_full_unstemmed |
The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency |
title_sort |
research of botnet detection and managementscheme – case study of a government agency |
publishDate |
2011 |
url |
http://ndltd.ncl.edu.tw/handle/kcp727 |
work_keys_str_mv |
AT chungshankuo theresearchofbotnetdetectionandmanagementschemecasestudyofagovernmentagency AT guōzhōngshān theresearchofbotnetdetectionandmanagementschemecasestudyofagovernmentagency AT chungshankuo jiāngshīwǎnglùzhēncèyǔguǎnlǐjīzhìzhīyánjiūyǐmǒugōngwùjīguānwèilì AT guōzhōngshān jiāngshīwǎnglùzhēncèyǔguǎnlǐjīzhìzhīyánjiūyǐmǒugōngwùjīguānwèilì AT chungshankuo researchofbotnetdetectionandmanagementschemecasestudyofagovernmentagency AT guōzhōngshān researchofbotnetdetectionandmanagementschemecasestudyofagovernmentagency |
_version_ |
1719254411231887360 |