Authors
Manos Antonakakis, Roberto Perdisci, Wenke Lee, Nikolaos Vasiloglou II, David Dagon
Publication date
2011
Conference
20th USENIX Security Symposium (USENIX Security 11)
Description
In recent years Internet miscreants have been leveraging the DNS to build malicious network infrastructures for malware command and control. In this paper we propose a novel detection system called Kopis for detecting malware-related domain names. Kopis passively monitors DNS traffic at the upper levels of the DNS hierarchy, and is able to accurately detect malware domains by analyzing global DNS query resolution patterns.
Total citations
20112012201320142015201620172018201920202021202220232024516353536504547274733221011
Scholar articles
M Antonakakis, R Perdisci, W Lee, N Vasiloglou II… - 20th USENIX Security Symposium (USENIX Security …, 2011