Refined identification of hybrid traffic in DNS tunnels based on regression analysis
DNS (Domain Name System) tunnels almost obscure the true network activities of users, which makes it challenging for the gateway or censorship equipment to identify malicious or unpermitted network behaviors. An efficient way to address this problem is to conduct a temporal‐spatial analysis on the t...
Main Authors: | Huiwen Bai, Guangjie Liu, Jiangtao Zhai, Weiwei Liu, Xiaopeng Ji, Luhui Yang, Yuewei Dai |
---|---|
Format: | Article |
Language: | English |
Published: |
Electronics and Telecommunications Research Institute (ETRI)
2020-05-01
|
Series: | ETRI Journal |
Subjects: | |
Online Access: | https://doi.org/10.4218/etrij.2019-0299 |
Similar Items
-
Application Behavior Identification in DNS Tunnels Based on Spatial-Temporal Information
by: Huiwen Bai, et al.
Published: (2021-01-01) -
DNS Intrusion Detection (DID) — A SNORT-based solution to detect DNS Amplification and DNS Tunneling attacks
by: Sanjay Adiwal, et al.
Published: (2023-03-01) -
DNS Tunnelling, Exfiltration and Detection over Cloud Environments
by: Lehel Salat, et al.
Published: (2023-03-01) -
Real-Time Detection System for Data Exfiltration over DNS Tunneling Using Machine Learning
by: Orieb Abualghanam, et al.
Published: (2023-03-01) -
In-Depth Evaluation of the Impact of National-Level DNS Filtering on DNS Resolvers over Space and Time
by: Yanan Cheng, et al.
Published: (2022-04-01)