Mining for New C&C Domains

by George Chetcuti [Published on 9 Sept. 2013 / Last Updated on 9 Sept. 2013]

Mining for New C&C Domains in Live Networks with Adaptive Control Protocol Templates

In this paper, Terry Nelms, Roberto Perdisci, and Mustaque Ahamad present ExecScent, a novel system that aims to mine new, previously unknown C&C domain names from live enterprise network traffic. ExecScent automatically learns control protocol templates (CPTs) from examples of known C&C communications.

Download the white paper from here - https://www.damballa.com/downloads/a_pubs/Damballa_ExecScent.pdf

Add Review or Comment

Featured Links