Vis enkel innførsel

dc.contributor.authorJensen, Øyvind
dc.contributor.authorShalaginov, Andrii
dc.contributor.authorDyrkolbotn, Geir Olav
dc.date.accessioned2021-03-15T15:09:49Z
dc.date.available2021-03-15T15:09:49Z
dc.date.created2021-01-26T15:36:30Z
dc.date.issued2020
dc.identifier.issn1893-6563
dc.identifier.urihttps://hdl.handle.net/11250/2733490
dc.description.abstractThe Internet is a dangerous place, _lled with di_erent cyber threats, including malware. To withstand this, blacklists have been utilized for a long time to block known infection and delivery sources. However, through blacklisting the domain names we are leaving a landscape of threats to be unknown and forgotten. In this paper, _rst, we investigate the current state-of-the-art in cyber threats available on such blacklists. Then, we study the corresponding malicious actors and reveal that those persistently appear since 2006. By shedding light on this part of the cyber threat landscape we target increased infor-mation security perception of the landscape from the perspective of the average end-user. Moreover, it is clear that the blacklisting the domains should not be one-way function and need to be regularly re-evaluated. Moreover, blacklisting might not be enforced by client applications in addition to outdated system software leaving real danger. For prac-tical evaluation, we created a multi-focused experimental setup employing di_erent MS Windows OS and browser versions. This allowed us to perform a thorough analysis of blacklisted domains from the perspective of the published information, content retrieved and possible malware distribution campaigns. We believe that this paper serves as a step-ping stone in a re-evaluation of the once found and then blacklisted domains from the perspective of minimal security protection of a general user, who might not be equipped with a blacklisting mechanism.en_US
dc.language.isoengen_US
dc.publisherBibsys Open Journal Systemsen_US
dc.relation.urihttps://ojs.bibsys.no/index.php/NIK/article/view/853
dc.titleStudy of Blacklisted Malicious Domains from a Microsoft Windows End-user Perspective: Is It Safe Behind the Wall?en_US
dc.typePeer revieweden_US
dc.typeJournal articleen_US
dc.description.versionacceptedVersionen_US
dc.source.journalNorsk Informasjonssikkerhetskonferanse (NISK)en_US
dc.source.issue3en_US
dc.identifier.cristin1879737
dc.description.localcodeOpen Access. Published by Bibsys Open Journal Systems 2020.en_US
cristin.ispublishedtrue
cristin.fulltextpostprint
cristin.qualitycode1


Tilhørende fil(er)

Thumbnail

Denne innførselen finnes i følgende samling(er)

Vis enkel innførsel