Publication detail

Modeling Botnet C&C Traffic Lifespans from NetFlow Using Survival Analysis

OUJEZSKÝ, V. HORVÁTH, T. ŠKORPIL, V.

Original Title

Modeling Botnet C&C Traffic Lifespans from NetFlow Using Survival Analysis

Type

conference paper

Language

English

Original Abstract

In this paper we present a time behavioral analysis of a simulated botnet network traffic, collected and discovered from NetFlow messages. More specifically said – lifespans. The technique, which we used, is focused on to model command and control communication in a botnet network. The lifespan of this referred traffic is modeled by lifelines using Python language.

Keywords

Botnet; Lifespans; Modeling; NetFlow; Survival Analysis;

Authors

OUJEZSKÝ, V.; HORVÁTH, T.; ŠKORPIL, V.

Released

27. 6. 2016

Location

Vienna, Austria

ISBN

978-1-5090-1287-9

Book

Proceedings of the 39th International Conference on Telecommunication and Signal Processing, TSP 2016

ISBN

1805-5435

Periodical

International Conference on Telecommunications and Signal Processing (TSP)

State

Czech Republic

Pages from

50

Pages to

55

Pages count

6

URL

BibTex

@inproceedings{BUT126591,
  author="Václav {Oujezský} and Tomáš {Horváth} and Vladislav {Škorpil}",
  title="Modeling Botnet C&C Traffic Lifespans from NetFlow Using Survival Analysis",
  booktitle="Proceedings of the 39th International Conference on Telecommunication and Signal Processing, TSP 2016",
  year="2016",
  journal="International Conference on Telecommunications and Signal Processing (TSP)",
  pages="50--55",
  address="Vienna, Austria",
  doi="10.1109/TSP.2016.7760827",
  isbn="978-1-5090-1287-9",
  issn="1805-5435",
  url="https://ieeexplore.ieee.org/document/7760827"
}