Publication | Closed Access
A Domain is only as Good as its Buddies
25
Citations
29
References
2018
Year
Unknown Venue
High AccuracySocial MediaEngineeringData ScienceData MiningInternet ScienceThreat DetectionDomain CharacteristicKnowledge DiscoveryInference TechniquesComputer ScienceInformation ManagementBotnet DetectionDomain ModelDns Data
Inference based techniques are one of the major approaches to analyze DNS data and detect malicious domains. The key idea of inference techniques is to first define associations between domains based on features extracted from DNS data. Then, an inference algorithm is deployed to infer potential malicious domains based on their direct/indirect associations with known malicious ones. The way associations are defined is key to the effectiveness of an inference technique. It is desirable to be both accurate (i.e., avoid falsely associating domains with no meaningful connections) and with good coverage (i.e., identify all associations between domains with meaningful connections). Due to the limited scope of information provided by DNS data, it becomes a challenge to design an association scheme that achieves both high accuracy and good coverage.
| Year | Citations | |
|---|---|---|
Page 1
Page 1