Abstract
Domain names and domain name system (DNS) have been used and abused for over 30 years since the 1980s. Although legitimate Internet users rely on domain names as their indispensable infrastructures for using the Internet, attackers use or abuse them as reliable, instantaneous, and distributed attack infrastructure. However, there is a lack of complete understanding of such domain name abuses and the methods for coping with them. In this paper, we design and implement a unified and objective analysis pipeline combining the existing defense solutions to realize practical and optimal defenses against today's malicious domain names. The basic concept underlying our novel analytical approach is malicious domain names' chromatography. Our new analysis pipeline can distinguish among mixtures of malicious domain names for websites. On the basis of this concept, we do not create a hodgepodge of existing solutions but design separation of abused domain names and offer defense information by considering the characteristics of malicious domain names as well as the possible defense solutions and points of defense. Finally, we evaluate our analysis pipeline and output defense information using a large and real dataset to show the effectiveness and validity of our proposed approach.
Original language | English |
---|---|
Title of host publication | Proceedings - 2017 IEEE 41st Annual Computer Software and Applications Conference, COMPSAC 2017 |
Publisher | IEEE Computer Society |
Pages | 643-648 |
Number of pages | 6 |
Volume | 1 |
ISBN (Electronic) | 9781538603673 |
DOIs | |
Publication status | Published - 2017 Sept 7 |
Event | 41st IEEE Annual Computer Software and Applications Conference, COMPSAC 2017 - Torino, Italy Duration: 2017 Jul 4 → 2017 Jul 8 |
Other
Other | 41st IEEE Annual Computer Software and Applications Conference, COMPSAC 2017 |
---|---|
Country/Territory | Italy |
City | Torino |
Period | 17/7/4 → 17/7/8 |
Keywords
- blacklists
- countermeasures
- DNS
- domain name
ASJC Scopus subject areas
- Software
- Computer Science Applications