Botnets: Lifecycle and taxonomy

  • Nabil Hachem
  • , Yosra Ben Mustapha
  • , Gustavo Gonzalez Granadillo
  • , Herve Debar

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

The new threat of the Internet, but little known to the 'general public' is constituted by botnets. Botnets are networks of infected computers, which are headed by a pirate called also 'Attacker' or 'Master'. The botnets are nowadays mainly responsible for large-scale coordinated attacks. The attacker can ask the infected computers called 'Agents' or 'Zombies' to perform all sorts of tasks for him, like sending spam, performing DDoS attacks, phishing campaigns, delivering malware, or leasing or selling their botnets to other fraudsters anywhere. In this paper we present a classification that reflects the life cycle and current resilience techniques of botnets, distinguishing the propagation, the injection, the control and the attack phases. Then we study the effectiveness of the adopted taxonomy by applying it to existing botnets to study their main characteristics. We conclude by the upcoming steps in our research.

Original languageEnglish
Title of host publication2011 Conference on Network and Information Systems Security, SAR-SSI 2011, Proceedings
DOIs
Publication statusPublished - 1 Aug 2011
Externally publishedYes
Event2011 Conference on Network and Information Systems Security, SAR-SSI 2011 - Ile de Re, La Rochelle, France
Duration: 18 May 201121 May 2011

Publication series

Name2011 Conference on Network and Information Systems Security, SAR-SSI 2011, Proceedings

Conference

Conference2011 Conference on Network and Information Systems Security, SAR-SSI 2011
Country/TerritoryFrance
CityIle de Re, La Rochelle
Period18/05/1121/05/11

Fingerprint

Dive into the research topics of 'Botnets: Lifecycle and taxonomy'. Together they form a unique fingerprint.

Cite this