buchspektrum Internet-Buchhandlung

Neuerscheinungen 2011

Stand: 2020-01-07
Schnellsuche
ISBN/Stichwort/Autor
Herderstraße 10
10625 Berlin
Tel.: 030 315 714 16
Fax 030 315 714 14
info@buchspektrum.de

Jan Gerrit Göbel

Large-Scale Detection and Measurement of Malicious Content


2011. 236 S. 220 mm
Verlag/Jahr: SÜDWESTDEUTSCHER VERLAG FÜR HOCHSCHULSCHRIFTEN 2011
ISBN: 3-8381-2720-X (383812720X)
Neue ISBN: 978-3-8381-2720-0 (9783838127200)

Preis und Lieferzeit: Bitte klicken


Many different network and host-based security solutions have been developed in the past to counter the threat of autonomously spreading malware. Among the most common detection techniques for such attacks are network traffic analysis and the so-called honeypots. In this thesis, we introduce two new malware detection sensors that make use of the above mentioned techniques. The first sensor called Rishi, passively monitors network traffic to automatically detect bot infected machines. The second sensor called Amun follows the concept of honeypots and detects malware through the emulation of vulnerabilities in network services that are commonly exploited. Both sensors were operated for two years and collected valuable data on autonomously spreading malware in the Internet.From this data we were able to, for example, study the change in exploit behavior and derive predictions about preferred targets of todays´ malware.
He studied computer since at RWTH Aachen University and wrote his diploma thesis on "Advanced Honeynet-based Intrusion Detection". Finally, he finished his Ph.D. at University of Mannheim, researching in the area of honeypots, botnets, spam, and malware analysis.