검색 상세

경량화 에이전트를 이용한 분산 웜 탐지 및 방지 모델

Distributed Worm Detection and Prevention Model with Light-Weight Agent

초록/요약

A worm is a malware that propagates quickly from host to host without any human intervention. Need of early worm detection has changed research paradigm from signature based worm detection to the behavioral based detection. To increase effectiveness of proposed solution, in this paper we present mechanism of detection and prevention of worm in distributed fashion. Further more, to minimize the worm destruction; upon worm detection we propagate the possible attack alert to neighboring nodes in secure and organized manner. Considering worm behavior, our proposed mechanism detects worm cycles and infection chains to detect the sudden change in network performance. And our model neither needs to maintain a huge database of signatures nor needs to have too much computing power, that is why it is very light and simple. So, our proposed scheme is suitable for the ubiquitous environment. Simulation results illustrate better detection and prevention which leads to the reduction of infection rate.

more

목차

1. Introduction = 1
2. Background and Related Works = 3
3. The Proposed Idea = 5
3.1 Model 1 Backward Reporting = 5
3.2 Model 2 Backward & Forward Reporting = 7
4. Algorithm = 9
5. Simulation = 11
6. Conclusion = 15
References = 16

more