Measurements and Mitigation of Peer-to-Peer-Based Botnets: A Case Study on Storm Worm
Source: University of Mannheim
Botnets, i.e., networks of compromised machines under a common control infrastructure, are commonly controlled by an attacker with the help of a central server: all compromised machines connect to the central server and wait for commands. However, the first botnets that use Peer-to-Peer (P2P) networks for remote control of the compromised machines appeared in the wild recently. This paper introduces a methodology to analyze and mitigate P2P botnets. In a case study, the paper examines in detail the Storm Worm botnet, the most wide-spread P2P botnet currently propagating in the wild. The paper was able to infiltrate and analyze in-depth the botnet, which allows to estimate the total number of compromised machines.
| Format: | Size: | 578.40 | |
| Date: | Feb 2008 |
People who downloaded this item also downloaded
- 5 Steps Every Business Can Take to Guard Against Botnets
- Propagation Modeling and Analysis of Viruses in P2P Networks
- Network Virus Propagation Model Based on Effects of Removing Time and User Vigilance
- A Web-Based Network Worm Simulator
- Exact Modeling of Propagation for Permutation-Scanning Worms



