AGENT-BASED MODELING AND SIMULATION OF BOTNETS AND BOTNET DEFENSE

被引:0
作者
Kotenko, Igor [1 ]
Konovalov, Alexey [1 ]
Shorov, Andrey [1 ]
机构
[1] Russian Acad Sci, St Petersburg Inst Informat & Automat, Lab Comp Secur Problems, St Petersburg, Russia
来源
CONFERENCE ON CYBER CONFLICT, PROCEEDINGS 2010 | 2010年
关键词
cyber conflicts; cyber defense; botnets; Internet attacks and defense; DDoS; modeling and simulation; packet-based simulation; agent-based systems;
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Nowadays we are witnesses of the rapid spread of botnets across the Internet and using them for different cyber attacks against our systems. Botnets join a huge number of compromised computers in the Internet and allow using these computers for performing vulnerability scans, distributing denial-of-service (DDoS) attacks and sending enormous amounts of spam emails. It is a very complex task to detect such botnets and protect against their attacks. The paper considers the approach to the investigation of botnets and botnet defense mechanisms. The approach is based on the agent-based simulation of cyber attacks and cyber defense mechanisms, which combines discrete-event simulation, multi-agent approach and packet-level simulation of network protocols. The various methods of botnet attacks and counteraction against botnet DDoS attacks are explored by representing botnets and botnet defense components as agent teams using the software simulation environment under development. Agents are supposed to collect information from various sources, use different knowledge, forecast the intentions and actions of other agents, try to deceive the agents of competing team, react to actions of other agents. The teams of defense agents are able to cooperate as the defense system components of different organizations and Internet service providers (ISPs). The paper outlines the common framework and implementation peculiarities of the simulation environment as well as the experiments aimed on the investigation of botnets and botnet DDoS defense mechanisms.
引用
收藏
页码:21 / 44
页数:24
相关论文
共 54 条
[1]  
[Anonymous], RUSSIAN BOTNET WANTS
[2]  
[Anonymous], 1 WORKSH HOT TOP UND
[3]  
[Anonymous], 1 WORKSH HOT TOP UND
[4]  
[Anonymous], ARTIFICIAL INTELLIGE
[5]  
Bailey M., 2009, CYB APPL TECHN C HOM
[6]  
Barford P., 2007, ADV INFORM SECURITY, V27
[7]  
Binkley J. R., 2006, 2 C STEPS RED UNW TR
[8]  
Blank Stephen., 2008, Comparative Strategy, V27
[9]  
Bradley T., 2007, BOTNETS KILLER WEB A
[10]  
CHEN S, 2005, IEEE T PARALLEL DIST, V16