The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency

碩士 === 國立虎尾科技大學 === 資訊管理研究所 === 99 === With the progress of the times, network technology brings the convenience and efficiency. It has also brought crime and malicious acts relatively. Today the increasing cyber crime, such as data theft, DDoS attacks, the money mule, spam and phishing, are often h...

Full description

Bibliographic Details
Main Authors: Chung-Shan Kuo, 郭忠山
Other Authors: Chang-Shiann Wu
Format: Others
Language:zh-TW
Published: 2011
Online Access:http://ndltd.ncl.edu.tw/handle/kcp727
id ndltd-TW-099NYPI5396025
record_format oai_dc
spelling ndltd-TW-099NYPI53960252019-09-22T03:40:58Z http://ndltd.ncl.edu.tw/handle/kcp727 The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency 殭屍網路偵測與管理機制之研究-以某公務機關為例 Chung-Shan Kuo 郭忠山 碩士 國立虎尾科技大學 資訊管理研究所 99 With the progress of the times, network technology brings the convenience and efficiency. It has also brought crime and malicious acts relatively. Today the increasing cyber crime, such as data theft, DDoS attacks, the money mule, spam and phishing, are often heard from time to time. Zombie network is the driving force behind the scenes. Public authority network has hundreds of computers. If infected with a zombie botnet network, the government agency suffers huge losses and can not be estimated. This paper attempts to use zombie networks and transmission characteristics to detect bot-like activities in government agency. Using freeware-Open Audit and SharpPcap library to write sniffer for network traffic monitoring, and to provide public warning message when infected. This allows officials to take immediate disposal to prevent further disaster. List of hosts with suspected infection is presented to IT staff by e-mail and web. To avoid damage in botnet experiments, simulation is built and performed on Testbed@TWISC based on the Emulab system. Chang-Shiann Wu 吳昌憲 2011 學位論文 ; thesis 48 zh-TW
collection NDLTD
language zh-TW
format Others
sources NDLTD
description 碩士 === 國立虎尾科技大學 === 資訊管理研究所 === 99 === With the progress of the times, network technology brings the convenience and efficiency. It has also brought crime and malicious acts relatively. Today the increasing cyber crime, such as data theft, DDoS attacks, the money mule, spam and phishing, are often heard from time to time. Zombie network is the driving force behind the scenes. Public authority network has hundreds of computers. If infected with a zombie botnet network, the government agency suffers huge losses and can not be estimated. This paper attempts to use zombie networks and transmission characteristics to detect bot-like activities in government agency. Using freeware-Open Audit and SharpPcap library to write sniffer for network traffic monitoring, and to provide public warning message when infected. This allows officials to take immediate disposal to prevent further disaster. List of hosts with suspected infection is presented to IT staff by e-mail and web. To avoid damage in botnet experiments, simulation is built and performed on Testbed@TWISC based on the Emulab system.
author2 Chang-Shiann Wu
author_facet Chang-Shiann Wu
Chung-Shan Kuo
郭忠山
author Chung-Shan Kuo
郭忠山
spellingShingle Chung-Shan Kuo
郭忠山
The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency
author_sort Chung-Shan Kuo
title The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency
title_short The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency
title_full The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency
title_fullStr The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency
title_full_unstemmed The Research of Botnet Detection and ManagementScheme – Case Study of A Government Agency
title_sort research of botnet detection and managementscheme – case study of a government agency
publishDate 2011
url http://ndltd.ncl.edu.tw/handle/kcp727
work_keys_str_mv AT chungshankuo theresearchofbotnetdetectionandmanagementschemecasestudyofagovernmentagency
AT guōzhōngshān theresearchofbotnetdetectionandmanagementschemecasestudyofagovernmentagency
AT chungshankuo jiāngshīwǎnglùzhēncèyǔguǎnlǐjīzhìzhīyánjiūyǐmǒugōngwùjīguānwèilì
AT guōzhōngshān jiāngshīwǎnglùzhēncèyǔguǎnlǐjīzhìzhīyánjiūyǐmǒugōngwùjīguānwèilì
AT chungshankuo researchofbotnetdetectionandmanagementschemecasestudyofagovernmentagency
AT guōzhōngshān researchofbotnetdetectionandmanagementschemecasestudyofagovernmentagency
_version_ 1719254411231887360