Cooperative network behaviour analysis model for mobile Botnet detection

Recently, the mobile devices are well integrated with Internet and widely used by normal users and organizations which employ Bring Your Own Device technology. On the other hand, the mobile devices are less protected in comparison to computers. Therefore, the mobile devices and networks have now bec...

Full description

Saved in:
Bibliographic Details
Main Authors: Eslahi, M., Yousefi, M., Naseri, M. V., Yussof, Y. M., Tahir, N. M., Hashim, H.
Format: Conference or Workshop Item
Published: Institute of Electrical and Electronics Engineers Inc. 2016
Subjects:
Online Access:http://eprints.utm.my/id/eprint/73074/
https://www.scopus.com/inward/record.uri?eid=2-s2.0-84992034514&doi=10.1109%2fISCAIE.2016.7575046&partnerID=40&md5=f2e5a02bdef0827f24f13571e01e6409
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Universiti Teknologi Malaysia
id my.utm.73074
record_format eprints
spelling my.utm.730742017-11-26T03:37:05Z http://eprints.utm.my/id/eprint/73074/ Cooperative network behaviour analysis model for mobile Botnet detection Eslahi, M. Yousefi, M. Naseri, M. V. Yussof, Y. M. Tahir, N. M. Hashim, H. QA75 Electronic computers. Computer science Recently, the mobile devices are well integrated with Internet and widely used by normal users and organizations which employ Bring Your Own Device technology. On the other hand, the mobile devices are less protected in comparison to computers. Therefore, the mobile devices and networks have now become attractive targets for attackers. Amongst several types of mobile threats, the mobile HTTP Botnets can be considered as one of the most sophisticated attacks. A HTTP Bots stealthily infect mobile devices and periodically communicate with their controller called Botmaster. Although the Bots hide their activities amongst the normal web flows, their periodic pattern has been used as a measure to detect their activities. In this paper we propose a cooperative network behaviour analysis model to identify the level of periodicity posed by mobile Bots. Finally three metrics is proposed to detect Mobile HTTP Botnets based on similarity and correlation of their group activities. Test results show that the propose model can efficiently classify communication patterns into several periodicity categories and detect mobile Botnets. Institute of Electrical and Electronics Engineers Inc. 2016 Conference or Workshop Item PeerReviewed Eslahi, M. and Yousefi, M. and Naseri, M. V. and Yussof, Y. M. and Tahir, N. M. and Hashim, H. (2016) Cooperative network behaviour analysis model for mobile Botnet detection. In: 2016 IEEE Symposium on Computer Applications and Industrial Electronics, ISCAIE 2016, 30 May 2016 through 31 May 2016, Penang; Malaysia. https://www.scopus.com/inward/record.uri?eid=2-s2.0-84992034514&doi=10.1109%2fISCAIE.2016.7575046&partnerID=40&md5=f2e5a02bdef0827f24f13571e01e6409
institution Universiti Teknologi Malaysia
building UTM Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider Universiti Teknologi Malaysia
content_source UTM Institutional Repository
url_provider http://eprints.utm.my/
topic QA75 Electronic computers. Computer science
spellingShingle QA75 Electronic computers. Computer science
Eslahi, M.
Yousefi, M.
Naseri, M. V.
Yussof, Y. M.
Tahir, N. M.
Hashim, H.
Cooperative network behaviour analysis model for mobile Botnet detection
description Recently, the mobile devices are well integrated with Internet and widely used by normal users and organizations which employ Bring Your Own Device technology. On the other hand, the mobile devices are less protected in comparison to computers. Therefore, the mobile devices and networks have now become attractive targets for attackers. Amongst several types of mobile threats, the mobile HTTP Botnets can be considered as one of the most sophisticated attacks. A HTTP Bots stealthily infect mobile devices and periodically communicate with their controller called Botmaster. Although the Bots hide their activities amongst the normal web flows, their periodic pattern has been used as a measure to detect their activities. In this paper we propose a cooperative network behaviour analysis model to identify the level of periodicity posed by mobile Bots. Finally three metrics is proposed to detect Mobile HTTP Botnets based on similarity and correlation of their group activities. Test results show that the propose model can efficiently classify communication patterns into several periodicity categories and detect mobile Botnets.
format Conference or Workshop Item
author Eslahi, M.
Yousefi, M.
Naseri, M. V.
Yussof, Y. M.
Tahir, N. M.
Hashim, H.
author_facet Eslahi, M.
Yousefi, M.
Naseri, M. V.
Yussof, Y. M.
Tahir, N. M.
Hashim, H.
author_sort Eslahi, M.
title Cooperative network behaviour analysis model for mobile Botnet detection
title_short Cooperative network behaviour analysis model for mobile Botnet detection
title_full Cooperative network behaviour analysis model for mobile Botnet detection
title_fullStr Cooperative network behaviour analysis model for mobile Botnet detection
title_full_unstemmed Cooperative network behaviour analysis model for mobile Botnet detection
title_sort cooperative network behaviour analysis model for mobile botnet detection
publisher Institute of Electrical and Electronics Engineers Inc.
publishDate 2016
url http://eprints.utm.my/id/eprint/73074/
https://www.scopus.com/inward/record.uri?eid=2-s2.0-84992034514&doi=10.1109%2fISCAIE.2016.7575046&partnerID=40&md5=f2e5a02bdef0827f24f13571e01e6409
_version_ 1643656568121589760