Whispering Botnet Command and Control Instructions

被引:0
|
作者
Baden, Mathis [1 ]
Torres, Christof Ferreira [1 ]
Pontiveros, Beltran Borja Fiz [1 ]
State, Radu [1 ]
机构
[1] Univ Luxembourg, SnT, 29 Ave John F Kennedy, L-1855 Luxembourg, Luxembourg
来源
2019 CRYPTO VALLEY CONFERENCE ON BLOCKCHAIN TECHNOLOGY (CVCBT 2019) | 2019年
关键词
blockchain; botnet; whisper; C&C;
D O I
10.1109/CVCBT.2019.00009
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Botnets are responsible for many large scale attacks happening on the Internet. Their weak point, which is usually targeted to take down a botnet, is the command and control infrastructure: the foundation for the diffusion of the botmaster's instructions. Hence, botmasters employ stealthy communication methods to remain hidden and retain control of the botnet. Recent research has shown that blockchains can be leveraged for under the radar communication with bots, however these methods incur fees for transaction broadcasting. This paper discusses the use of a novel technology, Whisper, for command and control instruction dissemination. Whisper allows a botmaster to control bots at virtually zero cost, while providing a peer-to-peer communication infrastructure, as well as privacy and encryption as part of its dark communication strategy. It is therefore well suited for bidirectional botnet command and control operations, and creating a botnet that is very difficult to take down.
引用
收藏
页码:77 / 81
页数:5
相关论文
共 24 条
  • [1] Botnet Command and Control Mechanisms
    Zeidanloo, Hossein Rouhani
    Manaf, Azizah Abdul
    SECOND INTERNATIONAL CONFERENCE ON COMPUTER AND ELECTRICAL ENGINEERING, VOL 1, PROCEEDINGS, 2009, : 564 - 568
  • [2] Design of a Hybrid Command and Control Mobile Botnet
    Pieterse, Heloise
    Olivier, Martin
    PROCEEDINGS OF THE 8TH INTERNATIONAL CONFERENCE ON INFORMATION WARFARE AND SECURITY (ICIW-2013), 2013, : 183 - 192
  • [3] A SURVEY OF BOTNET DETECTION TECHNIQUES BY COMMAND AND CONTROL INFRASTRUCTURE
    Hyslip, Thomas S.
    Pittman, Jason M.
    JOURNAL OF DIGITAL FORENSICS SECURITY AND LAW, 2015, 10 (01) : 7 - 25
  • [4] A Basic Command and Control Strategy in Botnet Defense System
    Yamaguchi, Shingo
    2021 IEEE INTERNATIONAL CONFERENCE ON CONSUMER ELECTRONICS (ICCE), 2021,
  • [5] Progress in Command and Control Server Finding Schemes of Botnet
    Guo, Xiaojun
    Cheng, Guang
    Hu, Yifei
    Dai, Mian
    2016 IEEE TRUSTCOM/BIGDATASE/ISPA, 2016, : 1723 - 1727
  • [6] Getting Prepared for the Next Botnet Attack Detecting Algorithmically Generated Domains in Botnet Command and Control
    Kelley, Tim
    Furey, Eoghan
    2018 29TH IRISH SIGNALS AND SYSTEMS CONFERENCE (ISSC), 2018,
  • [7] Leveraging Bitcoin Testnet for Bidirectional Botnet Command and Control Systems
    Franzoni, Federico
    Abellan, Ivan
    Daza, Vanesa
    FINANCIAL CRYPTOGRAPHY AND DATA SECURITY, FC 2020, 2020, 12059 : 3 - 19
  • [8] Botract: abusing smart contracts and blockchain for botnet command and control
    Alibrahim, Omar
    Malaika, Majid
    INTERNATIONAL JOURNAL OF INFORMATION AND COMPUTER SECURITY, 2022, 17 (1-2) : 147 - 163
  • [9] Fluxing botnet command and control channels with URL shortening services
    Lee, Sangho
    Kim, Jong
    COMPUTER COMMUNICATIONS, 2013, 36 (03) : 320 - 332
  • [10] A framework for detecting botnet command and control communication over an encrypted channel
    Ismail Z.
    Jantan A.
    Yusoff M.N.
    International Journal of Advanced Computer Science and Applications, 2020, 11 (01): : 319 - 326