Future Internet Presenter : Eung Jun Cho Problem of current Internet Security Issue – BotNet : Detect and Defand BotNet
Security Issue on current Internet BotNet DoS Attack Virus, Worm Spam Mail Spoofing
What is the problems? Because of TCP(UDP)/IP There is no authentication before transmitting. If we know the address and port number, we can connect and send data.(DoS, Spam, Virus, Wrom Etc..) When TCP was invented(1975), there was no wireless network environments like nowadays.
Need What? Authentication mechanism. It cannot be used at all places. Modified architecture for Wireless Network Very hard to make or modify architecture Defend or detect mechanism for BotNet or Other Attack. Most realizable
Server–client Botnet C&C(Command and Control) server and Bots
Hybrid P2P Botnet Architecture
How to? Monitoring the traffic Using Honey-pot system Traffic will be burst to C&C server Using the DNS query Effective to Server-client Botnet Using Honey-pot system Make some virtual PC as bots or C&C server We can analysis the behavior of Botnet Effective to P2P and Server-Client Botnet
To Do. On WSN, how BotNet will be deployed? On WSN, how can we detect the BotNet?