Research of Botnet Situation Awareness Based on Big Data
With the rapid expansion of the botnet, a single network security system could not meet the requirement. Botnet situation awareness can dynamically reflect the overall botnet security and predict botnet security development trends. Characteristics of big data create opportunity for research breakthrough of large scale botnet situation awareness. This article discusses about botnet security situation awareness based on multi-source logs by utilizing big data analysis. It promotes detection accuracy and fast response of botnet events, and implements the early warning for DDoS attacks.
KeywordsBotnet Big data Situation awareness Network security
- 1.Luo, Zhiqiang, Jun, Shen: Research and application of mobile e-commerce user provenance authentication technology. Telecommun. Sci. 6, 7–12 (2009)Google Scholar
- 2.Jian, C., Fan, M.: Signatures extraction method based on classification of malicious software. J. Comput. Appl. 31(1), 83–84 (2011)Google Scholar
- 3.Wang, Xinliang: Analysis and Detection of Botnet Anomaly Traffic[D]. Beijing University of Posts and Telecommunications, Beijing (2011)Google Scholar
- 4.Yu, Xiaocong, Dong, Xiaomei, Ge, Y., et al.: Online botnet detection techniques. Geomatics Inf. Sci. Wuhan Univ. 35(15), 578–581 (2010)Google Scholar