English
Related papers

Related papers: Detecting Malicious Domains Using Statistical Inte…

200 papers

In cybersecurity, allow lists play a crucial role in distinguishing safe websites from potential threats. Conventional methods for compiling allow lists, focusing heavily on website popularity, often overlook infrequently visited legitimate…

Cryptography and Security · Computer Science 2025-02-23 Daiki Chiba , Hiroki Nakano , Takashi Koide

In recent years, the advances in digitalisation have also adversely contributed to the significant rise in cybercrimes. Hence, building the threat intelligence to shield against rising cybercrimes has become a fundamental requisite.…

Cryptography and Security · Computer Science 2024-12-05 Cebajel Tanan , Sameer G. Kulkarni , Tamal Das , Manjesh K. Hanawal

DNS is a distributed, fault tolerant system that avoids a single point of failure. As such it is an integral part of the internet as we use it today and hence deemed a safe protocol which is let through firewalls and proxies with no or…

Cryptography and Security · Computer Science 2019-06-28 Andreas Berg , Daniel Forsberg

The goal of this work is to systematically extract information from hacker forums, whose information would be in general described as unstructured: the text of a post is not necessarily following any writing rules. By contrast, many…

Social and Information Networks · Computer Science 2018-04-16 Joobin Gharibshah , Tai Ching Li , Andre Castro , Konstantinos Pelechrinis , Evangelos E. Papalexakis , Michalis Faloutsos

Anti-malware agents typically communicate with their remote services to share information about suspicious files. These remote services use their up-to-date information and global context (view) to help classify the files and instruct their…

Cryptography and Security · Computer Science 2021-09-24 Asaf Nadler , Ron Bitton , Oleg Brodt , Asaf Shabtai

Distributed denial of service(DDos) attack is ongoing dangerous threat to the Internet. Commonly, DDos attacks are carried out at the network layer, e.g. SYN flooding, ICMP flooding and UDP flooding, which are called Distributed denial of…

Networking and Internet Architecture · Computer Science 2014-02-11 Prajwal R Thakare , K. Hanumantha Rao

The detection of malicious websites has become a critical issue in cybersecurity. Therefore, this paper offers a comprehensive review of data-driven methods for detecting malicious websites. Traditional approaches and their limitations are…

Cryptography and Security · Computer Science 2023-05-17 Zeyuan Hu , Ziang Yuan

One of the major and serious threats that the Internet faces today is the vast amounts of data and files which need to be evaluated for potential malicious intent. Malicious software, often referred to as a malware that are designed by…

Cryptography and Security · Computer Science 2020-07-01 Sajedul Talukder

DNS manipulation is an increasingly common technique used by censors and other network adversaries to prevent users from accessing restricted Internet resources and hijack their connections. Prior work in detecting DNS manipulation relies…

Cryptography and Security · Computer Science 2023-05-17 Elisa Tsai , Deepak Kumar , Ram Sundara Raman , Gavin Li , Yael Eiger , Roya Ensafi

Cybercriminals have long depended on domain names for phishing, spam, malware distribution, and botnet operation. To facilitate the malicious activities, they continually register new domain names for exploitation. Previous work revealed an…

Cryptography and Security · Computer Science 2025-12-02 Yevheniya Nosyk , Maciej Korczyński , Carlos Gañán , Sourena Maroofi , Jan Bayer , Zul Odgerel , Samaneh Tajalizadehkhoob , Andrzej Duda

DNS is important in nearly all interactions on the Internet. All large DNS operators use IP anycast, announcing servers in BGP from multiple physical locations to reduce client latency and provide capacity. However, DNS is easy to spoof:…

Cryptography and Security · Computer Science 2020-11-30 Lan Wei , John Heidemann

Most online communications rely on DNS to map domain names to their hosting IP address(es). Previous work has shown that DNS-based network interference is widespread due to the unencrypted and unauthenticated nature of the original DNS…

Networking and Internet Architecture · Computer Science 2022-02-02 Nguyen Phong Hoang , Michalis Polychronakis , Phillipa Gill

As Internet users have become more savvy about the potential for their Internet communication to be observed, the use of network traffic encryption technologies (e.g., HTTPS/TLS) is on the rise. However, even when encryption is enabled,…

Cryptography and Security · Computer Science 2020-07-09 Nguyen Phong Hoang , Arian Akhavan Niaki , Nikita Borisov , Phillipa Gill , Michalis Polychronakis

Detecting and classifying suspicious or malicious domain names and URLs is fundamental task in cybersecurity. To leverage such indicators of compromise, cybersecurity vendors and practitioners often maintain and update blacklists of known…

Cryptography and Security · Computer Science 2026-02-06 Abdelkader El Mahdaouy , Salima Lamsiyah , Meryem Janati Idrissi , Hamza Alami , Zakaria Yartaoui , Ismail Berrada

We perform the first analysis of methodologies for launching DNS cache poisoning: manipulation at the IP layer, hijack of the inter-domain routing and probing open ports via side channels. We evaluate these methodologies against DNS…

Cryptography and Security · Computer Science 2022-05-13 Tianxiang Dai , Philipp Jeitner , Haya Shulman , Michael Waidner

Botnets represent a global problem and are responsible for causing large financial and operational damage to their victims. They are implemented with evasion in mind, and aim at hiding their architecture and authors, making them difficult…

Cryptography and Security · Computer Science 2014-11-03 Pedro Camelo , Joao Moura , Ludwig Krippahl

Virtually every Internet communication typically involves a Domain Name System (DNS) lookup for the destination server that the client wants to communicate with. Operators of DNS recursive resolvers---the machines that receive a client's…

Networking and Internet Architecture · Computer Science 2022-01-25 Paul Schmitt , Anne Edmundson , Nick Feamster

Existing distributed denial-of-service attack detection in software defined networks (SDNs) typically perform detection in a single domain. In reality, abnormal traffic usually affects multiple network domains. Thus, a cross-domain attack…

Networking and Internet Architecture · Computer Science 2018-09-20 Liehuang Zhu , Xiangyun Tang , Meng Shen , Xiaojiang Du , Mohsen Guizani

Domain Generation Algorithms (DGAs) are used by adversaries to establish Command and Control (C\&C) server communications during cyber attacks. Blacklists of known/identified C\&C domains are often used as one of the defense mechanisms.…

Cryptography and Security · Computer Science 2021-01-05 Ibrahim Yilmaz , Ambareen Siraj , Denis Ulybyshev

Recent web-based cyber attacks are evolving into a new form of attacks such as private information theft and DDoS attack exploiting JavaScript within a web page. These attacks can be made just by accessing a web site without distribution of…

Cryptography and Security · Computer Science 2015-02-16 JongHun Jung , Hwan-Kuk Kim , Soojin Yoon
‹ Prev 1 3 4 5 6 7 10 Next ›