English
Related papers

Related papers: Predicting Domain Generation Algorithms with Long …

200 papers

There is a continuous increase in the sophistication that modern malware exercise in order to bypass the deployed security mechanisms. A typical approach to evade the identification and potential takedown of a botnet command and control…

Cryptography and Security · Computer Science 2019-09-17 Constantinos Patsakis , Fran Casino , Vasilios Katos

Modern botnets rely on domain-generation algorithms (DGAs) to build resilient command-and-control infrastructures. Recent works focus on recognizing automatically generated domains (AGDs) from DNS traffic, which potentially allows to…

Cryptography and Security · Computer Science 2013-11-25 Stefano Schiavoni , Federico Maggi , Lorenzo Cavallaro , Stefano Zanero

Botnets and malware continue to avoid detection by static rules engines when using domain generation algorithms (DGAs) for callouts to unique, dynamically generated web addresses. Common DGA detection techniques fail to reliably detect DGA…

Cryptography and Security · Computer Science 2020-03-31 Kate Highnam , Domenic Puzio , Song Luo , Nicholas R. Jennings

One of the most common causes of lack of continuity of online systems stems from a widely popular Cyber Attack known as Distributed Denial of Service (DDoS), in which a network of infected devices (botnet) gets exploited to flood the…

Cryptography and Security · Computer Science 2022-08-11 Giorgio Piras , Maura Pintor , Luca Demetrio , Battista Biggio

In this work, we conduct a comprehensive study on the robustness of domain generation algorithm (DGA) classifiers. We implement 32 white-box attacks, 19 of which are very effective and induce a false-negative rate (FNR) of $\approx$ 100\%…

Cryptography and Security · Computer Science 2024-04-10 Arthur Drichel , Marc Meyer , Ulrike Meyer

The goal of Domain Generation Algorithm (DGA) detection is to recognize infections with bot malware and is often done with help of Machine Learning approaches that classify non-resolving Domain Name System (DNS) traffic and are trained on…

Cryptography and Security · Computer Science 2021-10-13 Benedikt Holmes , Arthur Drichel , Ulrike Meyer

Domain generation algorithms (DGAs) can be categorized into three types: zero-knowledge, partial-knowledge, and full-knowledge. While prior research merely focused on zero-knowledge and full-knowledge types, we characterize their…

Cryptography and Security · Computer Science 2022-12-09 Lihai Nie , Xiaoyang Shan , Laiping Zhao , Keqiu Li

Signature and anomaly based techniques are the quintessential approaches to malware detection. However, these techniques have become increasingly ineffective as malware has become more sophisticated and complex. Researchers have therefore…

Cryptography and Security · Computer Science 2021-03-05 Dennis Dang , Fabio Di Troia , Mark Stamp

This paper forecasts future Distributed Denial of Service (DDoS) attacks using deep learning models. Although several studies address forecasting DDoS attacks, they remain relatively limited compared to detection-focused research. By…

Cryptography and Security · Computer Science 2025-09-03 Kong Mun Yeen , Rafidah Md Noor , Wahidah Md Shah , Aslinda Hassan , Muhammad Umair Munir

Malware detection models based on deep learning have been widely used, but recent research shows that deep learning models are vulnerable to adversarial attacks. Adversarial attacks are to deceive the deep learning model by generating…

Cryptography and Security · Computer Science 2023-05-23 Kun Li , Fan Zhang , Wei Guo

Numerous malware families rely on domain generation algorithms (DGAs) to establish a connection to their command and control (C2) server. Counteracting DGAs, several machine learning classifiers have been proposed enabling the…

Cryptography and Security · Computer Science 2021-06-24 Arthur Drichel , Nils Faerber , Ulrike Meyer

In recent years, malware with tunneling (or: covert channel) capabilities is on the rise. While malware research led to several methods and innovations, the detection and differentiation of malware solely based on its DNS tunneling features…

Cryptography and Security · Computer Science 2025-11-20 Denis Petrov , Pascal Ruffing , Sebastian Zillien , Steffen Wendzel

In this paper we introduce an intrusion detection system for Denial of Service (DoS) attacks against Domain Name System (DNS). Our system architecture consists of two most important parts: a statistical preprocessor and a neural network…

Cryptography and Security · Computer Science 2009-12-10 Samaneh Rastegari , M. Iqbal Saripan , Mohd Fadlee A. Rasid

This paper details data science research in the area of Cyber Threat Intelligence applied to a specific type of Distributed Denial of Service (DDoS) attack. We study a DDoS technique prevalent in the Domain Name System (DNS) for which…

Cryptography and Security · Computer Science 2019-07-23 Renée Burton

Mobile devices are frequent targets of eCrime threat actors through SMS spearphishing (smishing) links that leverage Domain Generation Algorithms (DGA) to rotate hostile infrastructure. Despite this, DGA research and evaluation largely…

Cryptography and Security · Computer Science 2026-03-04 Adam Dorian Wong , John D. Hastings

In recent years, machine learning has achieved impressive results across different application areas. However, machine learning algorithms do not necessarily perform well on a new domain with a different distribution than its training set.…

Computer Vision and Pattern Recognition · Computer Science 2022-11-08 Ye Gao , Zhendong Chu , Hongning Wang , John Stankovic

Generative adversarial networks have been able to generate striking results in various domains. This generation capability can be general while the networks gain deep understanding regarding the data distribution. In many domains, this data…

Machine Learning · Computer Science 2019-09-16 Milad Salem , Shayan Taheri , Jiann Shiun Yuan

Nowadays, malware increasingly uses DNS-based covert channels in order to evade detection and maintain stealthy communication with its command-and-control servers. While prior work has focused on detecting such activity, identifying…

Cryptography and Security · Computer Science 2025-11-26 Pascal Ruffing , Denis Petrov , Sebastian Zillien , Steffen Wendzel

Domain generalization (DG) deals with the problem of domain shift where a machine learning model trained on multiple-source domains fail to generalize well on a target domain with different statistics. Multiple approaches have been proposed…

Computer Vision and Pattern Recognition · Computer Science 2020-07-29 Prashant Pandey , Mrigank Raman , Sumanth Varambally , Prathosh AP

Malicious domain detection (MDD) is an open security challenge that aims to detect if an Internet domain is associated with cyber-attacks. Among many approaches to this problem, graph neural networks (GNNs) are deemed highly effective.…

Cryptography and Security · Computer Science 2023-08-24 Mahmoud Nazzal , Issa Khalil , Abdallah Khreishah , NhatHai Phan , Yao Ma