Please use this identifier to cite or link to this item:
http://dspace.bits-pilani.ac.in:8080/jspui/handle/123456789/8374
Title: | Hades: A Hadoopbased Framework for Detection of PeertoPeer Botnets |
Authors: | Narang, Pratik |
Keywords: | Computer Science Network Lan Communication |
Issue Date: | 2014 |
Publisher: | ACM Digital Library |
Abstract: | This paper presents Hades, a Hadoop-based framework for detection of P2P botnets in an enterprise-level network, which is distributed and scalable by design. The contri- butions of this work are two-fold: Firstly, our work uses the Hadoop-ecosystem to adopt a ‘host-aggregation based’ approach which aggregates behavioral metrics for each Peer- to-Peer (P2P) host seen in network communications, and uses them to distinguish between benign P2P hosts and hosts infected by P2P botnets. Secondly, we propose a distributed data-collection architecture which can monitor inside-to-inside LAN traffic, as opposed to relying solely on the NetFlow information available at a backbone router which cannot see the LAN communications happening in the network. |
URI: | https://dl.acm.org/doi/pdf/10.5555/2726970.2726990 http://dspace.bits-pilani.ac.in:8080/xmlui/handle/123456789/8374 |
Appears in Collections: | Department of Computer Science and Information Systems |
Files in This Item:
There are no files associated with this item.
Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.