Abstract
The South African National Research and Education Network (SA NREN) proves network connectivity and services to all tertiary education networks and research councils within South Africa. The NREN forms part of South Africa’s national integrated cyber infrastructure, as such, it is a potential target for cyber-attacks. Due to the large volume of traffic and decentralised nature of the SA NREN, monitoring, reporting and mitigating cyber-attacks is a complex problem. The NREN Cyber Incident Response Team (CSIRT) uses network flow data to identify early indicators of cyber-attacks. In this paper the focus will be on the mechanisms used to identify malicious botnet traffic using network flow analysis.
Author supplied keywords
Cite
CITATION STYLE
Burke, I. D., & Herbert, A. (2020). Tracking botnets on nation research and education network. In European Conference on Information Warfare and Security, ECCWS (Vol. 2020-June, pp. 61–71). Curran Associates Inc. https://doi.org/10.34190/EWS.20.107
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.