Abstract
In the dynamic landscape of evolving cyber threats, Security Operations Centers (SOCs) play an important role in protecting digital assets. Among these threats, botnets are particularly challenging due to their ability to take over many devices and launch coordinated attacks. Through comparative analysis, the research gaps in existing frameworks have been identified. Based on these insights, a botnet detection and incident response framework aligned with SOC practices has been proposed. This proposed framework emphasizes proactive measures by integrating threat intelligence, detection and monitoring tools to detect botnet attack and facilitate rapid response. Future research will focus on conducting evaluation and validation studies to assess the effectiveness and performance of the framework in controlled environments. This effort will contribute to develop the framework and ensuring it aligns with practical cybersecurity needs.
Author supplied keywords
Cite
CITATION STYLE
Muhammad, R., Ismail, S. A., & Hassan, N. H. (2024). Botnet Detection and Incident Response in Security Operation Center (SOC): A Proposed Framework. International Journal of Advanced Computer Science and Applications, 15(3), 893–901. https://doi.org/10.14569/IJACSA.2024.0150389
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.