The Infona portal uses cookies, i.e. strings of text saved by a browser on the user's device. The portal can access those files and use them to remember the user's data, such as their chosen settings (screen view, interface language, etc.), or their login data. By using the Infona portal the user accepts automatic saving and using this information for portal operation purposes. More information on the subject can be found in the Privacy Policy and Terms of Service. By closing this window the user confirms that they have read the information on cookie usage, and they accept the privacy policy and the way cookies are used by the portal. You can change the cookie settings in your browser.
Along with the rapid development of social networks, social network worms have constituted one of the major internet security problems. The root of worm is the inevitable software vulnerability during the design and implementation process of software. So it is hard to completely avoid worms in the existing software engineering systems. Due to lots of bandwidth consumption, the patch cannot be transmitted...
In this paper, a delayed worm propagation model with birth and death rates is discussed. The number of system reinstallations may be increased when the hosts get unstable (infected or quarantined). In view of such situation, dynamic birth and death rates are introduced. Afterwards, the stability of the positive equilibrium is studied. Through the theoretical analysis, it is proved that the model is...
Due to the vulnerability of computer system, Internet worm is still greatly threatenning network security. It is found that the spread of worm regularly change because of the different space distributions of hosts and this phenomenon is defined as diurnal pattern. Based on diurnal pattern, two worm propagation models, namely simple diurnal forced model and complicated diurnal forced one, are constructed...
In recent years, many IPv6 networks have been deployed, and the security issues of which arouse more and more public concern. It is commonly believed that IPv6 provides greater security against random-scanning worms by virtue of a very large address space. However, a clever worm can develop a more intelligent scanning strategy to find target hosts. This paper presents a worm which uses the p2p-based...
The propagation model of P2P worms can reflect the worm behaviors and identify weakness in the worm propagation which gives guidelines to worm detection and defense. To improve the security of P2P network, a mathematical model is proposed which combines dynamic quarantine and P2P churn. The SIQRW model departs from previous P2P worm models in that considering the dynamic quarantine methods and the...
In this paper, a worm propagation model with pulse quarantine strategy is proposed to control the spread of the worm. This model which combines both the pulse quarantine and the constant quarantine strategy not only describes the propagation of the worm well and but also makes the infections eradicated effectively. Here, we show that there exits a stable infection-free periodic solution of the system...
A chaotic worm propagation model is proposed to analyze early worm propagation process in this paper. Worm propagation is very complex, whose major transitions are between regular cycles and irregular, possibly chaotic epidemics. This paper deals with a discrete mathematical model of early worm propagation systems: Chaotic Susceptible-Infected (CSI) model. In the CSI model, three threshold values...
P2P worm based on loopholes spreading in peer-to-peer network is a serious security threat. According to the characteristics of P2P worms, a signature-behavior-based P2P worm detection approach detecting the known P2P worm based on characteristic string matching is proposed. In addition, this method can also detect unknown P2P worms based on behavior. This method is mainly composed of the technology...
Due to the features of interaction between malicious codes, the cooperation becomes more and more common. In this paper, cooperation between worm and virus is discussed in detail, and a cooperation model named CM model is proposed to describe the dynamical process of propagation. Results of simulation and mathematic analysis show that the propagation performance is significantly improved with the...
We proposed a worm detection and defense system named bot-honeynet in this paper, which combines the best features of honeynet, anomaly detection and botnet. The combination of honeynet and anomaly detection system offers a tradeoff between false positive and false negative rates. The control mechanism of botnet can help our system control all the honeypots in the bot-honeynet. Bot-honeynet is designed...
High efficient and real-time characteristic of the signature-based approach guarantee the early detection of most known worms; while behavior-based approach searches for communication pattern of worms in accordance with their behavioral characteristics that are different from normal network traffic. To improve the detection rate and accuracy, two detection algorithms for diffuse type communication...
Set the date range to filter the displayed results. You can set a starting date, ending date or both. You can enter the dates manually or choose them from the calendar.