Dec. 9, 2022, 2:10 a.m. | Lihai Nie, Xiaoyang Shan, Laiping Zhao, Keqiu Li

cs.CR updates on arXiv.org arxiv.org

Domain generation algorithms (DGAs) can be categorized into three types:
zero-knowledge, partial-knowledge, and full-knowledge. While prior research
merely focused on zero-knowledge and full-knowledge types, we characterize
their anti-detection ability and practicality and find that zero-knowledge DGAs
present low anti-detection ability against detectors, and full-knowledge DGAs
suffer from low practicality due to the strong assumption that they are fully
detector-aware. Given these observations, we propose PKDGA, a partial
knowledge-based domain generation algorithm with high anti-detection ability
and high practicality. PKDGA employs …

algorithm botnets domain partial

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Security Engineers

@ D. E. Shaw Research | New York City

Cyber Security Architect - SR

@ ERCOT | Taylor, TX

SOC Analyst

@ Wix | Tel Aviv, Israel

Associate Director, SIEM & Detection Engineering(remote)

@ Humana | Remote US

Senior DevSecOps Architect

@ Computacenter | Birmingham, GB, B37 7YS