Detection of Malicious Servers for Preventing Client-Side Attacks

  • Khuda Bux Institute of Systems Engineering, Riphah International University, Islamabad, Pakistan.
  • Muhammad Yousaf Institute of Systems Engineering, Riphah International University, Islamabad, Pakistan .
  • Akhtar Hussain Jalbani Department of IT, Quaid-e-Awam University of Engineering, Science and Technology, Nawabshah, Sindh, Pakistan.
  • Komal Batool Institute of Systems Engineering, Riphah International University, Islamabad, Pakistan .

Abstract

The number of client-side attacks is increasing day-by-day. These attacks are launched by using various methods like phishing, drive-by downloads, click-frauds, social engineering, scareware, and ransomware. To get more advantage with less exertion and time, the attackers are focus on the clients, rather than servers which are more secured as compared to the clients. This makes clients as an easy target for the attackers on the Internet. A number of systems/tools have been created by the security community with various functions for detection of client-side attacks. The discovery of malicious servers that launch the client side attacks can be characterized in two types. First to detect malicious servers with passive detection which is often signature based. Second to detect the malicious servers with active detection often with dynamic malware analysis. Current systems or tools have more focus on identifying malicious servers rather than preventing the clients from those malicious servers. In this paper, we have proposed a solution for the detection and prevention of malicious servers that use the Bro Intrusion Detection System (IDS) and VirusTotal API 2.0. The detected malicious link is then blocked at the gateway.

Published
Jan 1, 2021
How to Cite
BUX, Khuda et al. Detection of Malicious Servers for Preventing Client-Side Attacks. Mehran University Research Journal of Engineering and Technology, [S.l.], v. 40, n. 1, p. 230-240, jan. 2021. ISSN 2413-7219. Available at: <https://publications.muet.edu.pk/index.php/muetrj/article/view/2001>. Date accessed: 26 apr. 2024. doi: http://dx.doi.org/10.22581/muet1982.2101.20.
This is an open Access Article published by Mehran University of Engineering and Technolgy, Jamshoro under CCBY 4.0 International License