摘要
僵尸网络是目前互联网安全最严重的威胁之一。与IRC僵尸网络比,基于P2P协议控制的僵尸网络具有更强的安全性、鲁棒性和隐蔽性。文章介绍了典型P2P僵尸网络的工作原理,对其对等点发现机制进行了分类,分析了每类机制的弱点,在此基础上给出了相应的僵尸网络检测方法。
Botnet is one of the most serious threats to the security of the Internet nowadays.As compared with IRC Botnets, the control ofP2P Botnets is more secure, robust and stealthy. The working principles for typical P2P Botnets are presented.And then the methods for peer discovery of P2P Botnets are classified, and their weak points are analyzed respectively. Based on the analysis, the methods for detecting P2P Botnets are given.
出处
《信息安全与通信保密》
2008年第4期34-36,共3页
Information Security and Communications Privacy
基金
哈尔滨工业大学(威海)校研究基金资助项目
编号:HIT(WH)200702