Correlation based analysis of spreading Codered worms

Qianli Zhang,Jilong Wang,Xing Li
DOI: https://doi.org/10.1109/ICICIP.2010.5564187
2010-01-01
Abstract:The spreading worms have greatly affected the network infrastructure security. After the CodeRed, there have been many new worms reported. To take countermeasure against the spreading worms, in this paper, a correlation based method is proposed and applied in the analysis. Results indicate that the spreading worms could cause dramatic changes in the flow size distribution. This method provides new insight into the worm detection and traffic anomaly discovery.
What problem does this paper attempt to address?