Dissertation > Excellent graduate degree dissertation topics show

Bot session affinity based botnet detection method

Author: YanQing
Tutor: FuYan
School: University of Electronic Science and Technology
Course: Computer Software and Theory
Keywords: Intrusion Detection Data Mining Zombie machine Botnets (Botnet) Neural Networks
CLC: TP393.08
Type: Master's thesis
Year: 2009
Downloads: 229
Quote: 5
Read: Download Dissertation

Abstract


With the rapid development and wide application of computer network technology, especially the rapid spread of the Internet to promote innovation and upgrade of computer and Internet technology. The growing network facilities and resources for the importance of the state, enterprises and individuals, in changing people's traditional way of life, work, and learn ways at the same time it also brings new problems and challenges. Human society, the degree of information is increasing, and increasing dependence on the network, and the normal of the information society, how can we ensure safe and smooth operation of computer network security is one of the most important aspects, must continue to be able to enrich strengthen and improve. Currently, the breadth and depth of the field of network interconnection continues to expand, the deepening open nature, caused by the increasing number of network systems face the threat of attacks and intrusions. Botnets (Botnet) with automatic application of intelligent program development. Worm technology continues to mature, the spread of the zombie virus worms active communication technologies, which can quickly build a large-scale botnets (Botnet). Botnet is a new attack evolved from a traditional malicious code form, provide an attacker with the occult, flexible and efficient one-to-many command and control mechanisms, can control a large number of zombie hosts information theft, distributed denial of service attacks and spammers attack purposes. The botnet is entering a period of rapid development, has caused a serious threat to Internet security. Botnet is just emerging, the methods used are mostly traditional reverse engineering methods. First, reverse engineering analysis of virus samples, found by analyzing their signatures. And according to the signature capture and processing of the zombie virus. But a lot of ills of this detection method used in traditional virus that zombie viruses are generally long incubation period, does not exhibit the traditional characteristics of the virus during the incubation period. Thus, traditional methods of analysis will lose its effectiveness. In addition, due to the development of the virus technology in recent years, a variety of viruses packers technology after another, to the use of the traditional virus reverse engineering analysis methods brought great difficulties. In the above context, as well as expand the collection of data mining and network intrusion detection to detect botnet explore 242 project - P2P botnet detection and anti-system \First, a brief description, and classified intrusion detection and data mining technology background. Botnet detection intrusion detection based on data mining technology and then discusses and proposes a new mechanism based on the detection of the communication session between the botnet zombie machines. Finally, the full text of the work summarized in this thesis, the problems and the direction of technology development.

Related Dissertations

  1. High Speed Frequency Measurment and Non-Linearity Correction of Frequency Modulated Capacitive Displacement Sensor,TH822
  2. A Study on Healthcare Product Marketing Based on Data Mining Technology,F426.72
  3. Gao Zhong-ying academic thought and experience and use of Bufei Decoction treatment of common diseases of the respiratory system drug law,R249.2
  4. Bing- thick academic thought and clinical experience and empirical studies apply to turtle soups treatment of chronic kidney disease,R249.2
  5. Research on Anti-periodic Solutions of Delayed Cellular Neural Networks without Assuming Global Lipschitz Conditions,TP183
  6. Designs and Applications of Fuzzy Synthetic Evaluation Models Based on Parallel Algorithms,TP18
  7. Intrusion detection based on the ultrasonic echo envelope in the military security patrols,E919
  8. The Design and Implementation of Bicluster Data Analyzing Software,TP311.52
  9. Research on Clustering Algorithm Based on Mutation Particle Swarm Optimization,TP18
  10. Research on Fuzzy C-Mean Clustering Algorithm Based on Particle Swarm Optimization and Shuffled Frog Leaping Algorithm,TP18
  11. Research on Clustering Algorithm Based on Genetic Algorithm and Rough Set Theory,TP18
  12. Research on Intrusion Detection Technology of Wireless Sensor Networks Based on Behavior Trust,TP212.9
  13. Spectrum Variation of Vegetation in Yanzhou Coal Mine Area and Heavy Metal Stress Characteristic,X173
  14. Based on data mining research tax audit case selection,F812.42
  15. Community-oriented education, personalized learning system and its implementation,TP391.6
  16. Association rule mining based Intrusion Detection System Research and Implementation,TP393.08
  17. Data warehouse technology in the banking customer management systems research and implementation,TP315
  18. Design to E-learning System in Senior Vocational School Base on Moodle,TP311.52
  19. Design and Development of Teaching Quality Assessment System Based on Data Mining,TP311.13
  20. The Application of Association Rules Algorithm in Higher Vocational Colleges’ Endorsement of Impoverished Students,G717
  21. Based on Data Mining Technologies in Urban Water Supply Analysis and Decision,F299.24;F224

CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net  Mobile