Malicious automatically generated domain name detection using Stateful-SBB

  • Authors:
  • Fariba Haddadi;H. Gunes Kayacik;A. Nur Zincir-Heywood;Malcolm I. Heywood

  • Affiliations:
  • Computer Science, Dalhousie University, Halifax, NS, Canada;Glasgow Caledonian University, Scotland, UK;Computer Science, Dalhousie University, Halifax, NS, Canada;Computer Science, Dalhousie University, Halifax, NS, Canada

  • Venue:
  • EvoApplications'13 Proceedings of the 16th European conference on Applications of Evolutionary Computation
  • Year:
  • 2013

Quantified Score

Hi-index 0.00

Visualization

Abstract

This work investigates the detection of Botnet Command and Control (C&C) activity by monitoring Domain Name System (DNS) traffic. Detection signatures are automatically generated using evolutionary computation technique based on Stateful-SBB. The evaluation performed shows that the proposed system can work on raw variable length domain name strings with very high accuracy.