An architecture for an email worm prevention system

Mohamed Mahmoud Taibah, Ehab Al-Shaer, Raouf Boutaba

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

4 Scopus citations

Abstract

Email worms comprise the largest portion of Internet worms today. Previous research has shown that they are an effective vehicle to deliver malicious code to a large group of users. These worms spread rapidly using the email infrastructure, causing significant financial damage, network congestion, and privacy invasion. We present a dynamic architecture to proactively defend a protected domain against email worms. This architecture integrates concepts from the areas of Markov decision processes, Rabin fingerprinting and honeypots to inspect, detect, and quarantine unknown email worms in a timely manner. We also present the results of several simulation experiments to evaluate the effectiveness of the architecture under different environment conditions.

Original languageEnglish
Title of host publication2006 Securecomm and Workshops
DOIs
StatePublished - 2006
Externally publishedYes
Event2006 Securecomm and Workshops - Baltimore, MD, United States
Duration: 28 Aug 20061 Sep 2006

Publication series

Name2006 Securecomm and Workshops

Conference

Conference2006 Securecomm and Workshops
Country/TerritoryUnited States
CityBaltimore, MD
Period28/08/061/09/06

ASJC Scopus subject areas

  • Computer Networks and Communications
  • Communication

Fingerprint

Dive into the research topics of 'An architecture for an email worm prevention system'. Together they form a unique fingerprint.

Cite this