Hades: A Hadoopbased Framework for Detection of PeertoPeer Botnets

dc.contributor.authorNarang, Pratik
dc.date.accessioned2023-01-07T04:27:04Z
dc.date.available2023-01-07T04:27:04Z
dc.date.issued2014
dc.description.abstractThis paper presents Hades, a Hadoop-based framework for detection of P2P botnets in an enterprise-level network, which is distributed and scalable by design. The contri- butions of this work are two-fold: Firstly, our work uses the Hadoop-ecosystem to adopt a ‘host-aggregation based’ approach which aggregates behavioral metrics for each Peer- to-Peer (P2P) host seen in network communications, and uses them to distinguish between benign P2P hosts and hosts infected by P2P botnets. Secondly, we propose a distributed data-collection architecture which can monitor inside-to-inside LAN traffic, as opposed to relying solely on the NetFlow information available at a backbone router which cannot see the LAN communications happening in the network.en_US
dc.identifier.urihttps://dl.acm.org/doi/pdf/10.5555/2726970.2726990
dc.identifier.urihttp://dspace.bits-pilani.ac.in:8080/xmlui/handle/123456789/8374
dc.language.isoenen_US
dc.publisherACM Digital Libraryen_US
dc.subjectComputer Scienceen_US
dc.subjectNetworken_US
dc.subjectLan Communicationen_US
dc.titleHades: A Hadoopbased Framework for Detection of PeertoPeer Botnetsen_US
dc.typeArticleen_US

Files

License bundle

Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed upon to submission
Description: