错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

Detection Tools for Outbound C2 Traffic

  • Charisee Zhi Ling Yip,
  • Clarabel Jinghui Teo,
  • Tee Kiat Chua,
  • Jing Rui Goh,
  • Brandon Jia Le Loo,
  • Huaqun Guo,
  • Liming Lu,
  • Kan Chen

摘要

Ransomware attacks have rapidly evolved in sophistication and pose severe threats to organizations by encrypting critical data and demanding ransom payments. A key component in ransomware campaigns is the Command and Control (C2) communication where compromised systems establish outbound connections with malicious servers to receive instructions and exfiltrate data. As such, detecting C2 outbound traffic is crucial for early detection and mitigation of ransomware attacks. This paper provides a comprehensive analysis and comparison of existing detection techniques, and their respective tools specifically aimed at identifying ransomware C2 traffic.