作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2011, Vol. 37 ›› Issue (22): 1-4. doi: 10.3969/j.issn.1000-3428.2011.22.001

• 专栏 •    下一篇

一种基于Android系统的手机僵尸网络

刘潇逸 1,2,崔 翔 2,郑东华 3,李 善 3   

  1. (1. 华东师范大学计算机科学技术系,上海 200241;2. 中国科学院计算技术研究所,北京 100080; 3. 上海市经济和信息化委员会信息中心,上海 200003)
  • 收稿日期:2011-07-11 出版日期:2011-11-18 发布日期:2011-11-20
  • 作者简介:刘潇逸(1987-),男,硕士研究生,主研方向:网络安全,僵尸网络;崔 翔,博士;郑东华、李 善,学士
  • 基金资助:

    国家“863”计划基金资助项目(2007AA010501)

Mobile Botnet Based on Android System

LIU Xiao-yi 1,2, CUI Xiang 2, ZHENG Dong-hua 3, LI Shan 3   

  1. (1. Department of Computer Science and Technology, East China Normal University, Shanghai 200241, China; 2. Institute of Computing Technology, Chinese Academy of Sciences, Beijing 100080, China; 3. Information Center, Shanghai Municipal Commission of Economy and Informatization, Shanghai 200003, China)
  • Received:2011-07-11 Online:2011-11-18 Published:2011-11-20

摘要:

提出一种基于Android系统的手机僵尸网络,设计命令控制信道及手机状态回收方式。分析僵尸手机的恶意行为,给出手机僵尸网络防劫持策略,包括多服务器策略、域名flux技术与身份认证系统,通过RSS及GZIP压缩技术降低僵尸程序消耗的网络流量。对手机僵尸网络的发展趋势及防御手段进行了讨论。

关键词: 手机僵尸网络, Android系统, 命令控制信道, 恶意行为, 防劫持, 流量控制

Abstract:

This paper proposes a kind of mobile botnet based on Android system, including the design of command and control channel, the way that botmaster recycles the information of controlled phones. It analyzes the malicious act of the bot phones, gives the defense of hijack, including the multiserver strategy, the domain-flux technology, and the identity authentication system. It reduces the flow rate of bot program by RSS and GZIP technology. The future and the defense of mobile botnet are discussed.

Key words: mobile botnet, Android system, command and control channels, malicious act, defense of hijack, flow control

中图分类号: