Dissertation > Excellent graduate degree dissertation topics show

The Design and Implementation of High-Interaction Honeypots Based Malicious Web Pages Detecting System

Author: LiuHengYa
Tutor: ZhangDongMei
School: Beijing University of Posts and Telecommunications
Course: Computer Science and Technology
Keywords: Malicious Web page Highly interactive Web crawler Rootkit
CLC: TP393.08
Type: Master's thesis
Year: 2011
Downloads: 55
Quote: 0
Read: Download Dissertation

Abstract


The Internet boom has brought a major change in the world. But with the growing number of Web services program and Web site development, Web vulnerabilities like sprung up. In recent years, the network appeared on a new type of attack: client-side attacks. Client attack client software vulnerabilities to attack targets in various types of client software is widely used today, client attacks have resulted in today's Internet a serious threat. High-interaction client honeypot is an emerging technology for detection of client-side attacks, mainly to detect malicious Web page. High-interaction honeypots are identified by the virtual machine and monitor system status and potential malicious URL interact malicious URL. When the high-interaction honeypots detected unauthorized state change, put the URL of the current interactive determined to be malicious. This paper first introduces the malicious software, client-side attacks and their detection and honeypot technology, and a detailed analysis of the strengths and weaknesses of the current mainstream high-interaction honeypots. Such as the correct detection rate of high-interaction honeypots some malicious URL is room for improvement, especially to hang horse malicious URL owns the file, registry, or the process hidden features Rootkit, high-interaction honeypots can not be detected correctly. Secondly, the system found in the collection of malicious URLs host pages often after the reptile after real malicious code. When the the the reptiles technology integrated into high-interaction honeypot, the experimental results show that high-interaction honeypots correct detection rate increased significantly. Based on the above two considerations, the system on the basis of high-interaction honeypots, integration of the the reptiles technology security and anti-Rootkit technology, design and implementation of a malicious URL detection system and a new two technologies to do in-depth analysis and design . First of all, due to the high-interaction honeypots malicious URL interact when you want to monitor all files, processes, registry status, it consumes more time and resources, thereby reducing the speed of high-interaction honeypot detection, this paper design reptiles technology taking into account both detection rates have increased, not too much of an impact speed be detected. That is suitable for high-interaction honeypots reptiles technology. Secondly, on the basis of a detailed analysis of current the Rootkit general detection method and its defects, the system uses a comprehensive Rootkit detection method, the test of the experimental data show that the comprehensive detection method can detect Rootkit Horse Hanging.

Related Dissertations

  1. Design and Implementation of Drive Level Trojan Transmission and Encryption Algorithms,TP393.08
  2. Based WebHarvest the Chinese financial news search engine design and implementation,TP311.52
  3. VM-based security monitoring studies,TP274
  4. Topic-based Web Information Monitoring System Strategy and Implementation,TP393.09
  5. Research on Data Acquisition and Topic Analysis of Online Public Opinion,TP393.09
  6. Vertical Search Engine Technology in Network Control in the Patrol Public Opinion Research and Application,TP391.3
  7. Research and Implementation on Topic Search Oriented to Enterprise Competitive Intelligence,TP391.3
  8. The Research on Key Techniques for Page Segmentation Based Forum Crawler,TP393.092
  9. Research on Web Crawler Technology in Search Engine,TP391.3
  10. The Study and Implementation of Topic Search and Web Mining,TP391.3
  11. Research and Implementation on Textual Orientation Classification of Web Review Text,TP311.52
  12. Design and Implementation of Text Information Extracting Modules of Html Web Pages Based on DOM,TP393.092
  13. Research on Dynamic Detection Technology of XSS Attack Based on Network Spider,TP393.08
  14. Research and Implementation of the theme search engine,TP391.3
  15. Ajax Data Search Engine Clawer Research and Design,TP391.3
  16. Design and Implement of Information Document Search Engine System Based on JavaEE Platform and Lucene,TP391.3
  17. Medical Advertisments Monitoring System Based on Web Content Mining,TP393.09
  18. Research on BBS Content Supervision Technology Based on Active Search,TP393.092
  19. Design and Implementation of Distributed Web Crawler Based on Groovy,TP391.3
  20. Research on Several Key Technical Issues in Product Review Identification,TP391.3
  21. Research and Implementation of the Vertical Search Engine System Based on JAVA with LUCENE and HERITRIX,TP391.3

CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net  Mobile