Botnet Detection and Incident Response in Security Operation Center (SOC): A Proposed Framework

4Citations
Citations of this article
17Readers
Mendeley users who have this article in their library.

Abstract

In the dynamic landscape of evolving cyber threats, Security Operations Centers (SOCs) play an important role in protecting digital assets. Among these threats, botnets are particularly challenging due to their ability to take over many devices and launch coordinated attacks. Through comparative analysis, the research gaps in existing frameworks have been identified. Based on these insights, a botnet detection and incident response framework aligned with SOC practices has been proposed. This proposed framework emphasizes proactive measures by integrating threat intelligence, detection and monitoring tools to detect botnet attack and facilitate rapid response. Future research will focus on conducting evaluation and validation studies to assess the effectiveness and performance of the framework in controlled environments. This effort will contribute to develop the framework and ensuring it aligns with practical cybersecurity needs.

Cite

CITATION STYLE

APA

Muhammad, R., Ismail, S. A., & Hassan, N. H. (2024). Botnet Detection and Incident Response in Security Operation Center (SOC): A Proposed Framework. International Journal of Advanced Computer Science and Applications, 15(3), 893–901. https://doi.org/10.14569/IJACSA.2024.0150389

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free