Secure and Efficient Internet Operation
Area Director: Dr. Elmar Gerhards-Padilla
This research area directed by Dr. Elmar Gerhards-Padilla includes activities aiming at a more secure and a more efficient operation of network components inside the Internet or of systems attached to the Internet. The basic principle of these activities is a systematic approach to the detection of threats and shortcomings and – where possible – to healing mechanisms. Due to the real-world orientation, technical and mathematical/theoretical issues are accompanied by legal and economical aspects which can only be successfully addressed in close co-operation with government agencies or institutions.
Special Topics
The Conficker worm has infected several million computers since it first started spreading in late 2008 but attempts to mitigate Conficker have not yet proved very successful. Together with the renowned Honeynet Project we developed several methods to contain Conficker and published our findings in a technical paper. The publication and reports about our Conficker network scanner raised quite some media attention.
We have put together a dedicated page that contains all our research findings about Conficker, intrusion detection signatures, a link to our online infection test, all tools we have developed (including source code) etc.
We have been able to help several sites to identify and clean Conficker machines in their network. It turned out that the methods developed against the virus allow for reliable identification, removal and also preventive protection of other systems.
Related Teaching
Each summer term, we offer a lecture “network security” which is related to this field. We also offer labs, project groups and seminars, a "Malware Bootcamp" and Training for Professionals.
- University of Utah : "CS 7934 — Computer Systems Seminar", 2011-Spring
- Clerk Endweller Blog : "Three ENISA Reports", 2011-04-08_09:08
- Tecnonews.info (Spanisch) : "Barcelona Digital participa en el estudio de ENISA –la Agencia Europea de Seguridad– para detectar y combatir las botnets", 2011-04-06_23:08
- SpamFighter.com : "EU Agency Research Paper Addresses Botnets", 2011-03-22
- CyberWarzone : "The European Network and Information Security Agency", 2011-03-22_06:37
- Antivirus Buyability : "Botnet Threat Misleading?", 2011-03-18
- Breitbandkompass : "Bericht zur Bekämpfung von Botnetzen veröffentlicht", 2011-03-18
- Stenskott Blog : "Save yourself from Zombie Laws", 2011-03-16
- Microsoft Blog – Kevin Sullivan : "ENISA Reports on Fighting Botnets", 2011-03-15_11:41
- OneStopClick : "Botnets are a growing threat to cloud security", 2011-03-14_12:35
- Stewart Room Blog : "#ENISA #botnet reports", 2011-03-13
More links to news agencies, journals, broadcasting stations, etc reporting on our activities are available >>> here.
For further information please contact: SEIO@ cs.uni-bonn.de