作者
Masashi Eto, Daisuke Inoue, Jungsuk Song, Junji Nakazato, Kazuhiro Ohtaka, Koji Nakao
发表日期
2011/4/10
图书
Proceedings of the First Workshop on Building Analysis Datasets and Gathering Experience Returns for Security
页码范围
37-45
简介
We have been developing the Network Incident analysis Center for Tactical Emergency Response (nicter), whose objective is to detect and identify propagating malwares. The nicter mainly monitors darknet, a set of unused IP addresses, to observe global trends of network threats, while it captures and analyzes malware executables. By correlating the network threats with analysis results of malware, the nicter identifies the root causes (malwares) of the detected network threats. Through a long-term operation of the nicter for more than five years, we have achieved some key findings that would help us to understand the intentions of attackers and the comprehensive threat landscape of the Internet. With a focus on a well-knwon malware, i. e., W32.Downadup, this paper provides some practical case studies with considerations and consequently we could obtain a threat landscape that more than 60% of attacking …
引用总数
2012201320142015201620172018201920202021202220232576371241
学术搜索中的文章
M Eto, D Inoue, J Song, J Nakazato, K Ohtaka, K Nakao - Proceedings of the First Workshop on Building Analysis …, 2011