Affiliation |
Institute of Advanced Sciences |
Job Title |
Specially Appointed Associate Professor |
Research Fields, Keywords |
Network, Malware Dynamic Analysis, Information Security |
Web Site |
TANABE Rui
|
The Best Research Achievement in Research Career 【 display / non-display 】
-
【Published Thesis】 Detect Me If You ... Oh Wait. An Internet-Wide View of Self-Revealing Honeypots 2019
【Published Thesis】 Evasive Malware via Identifier implanting 2018.06
【Awards】 情報処理学会2017年度山下研究記念賞 2017.03
The Best Research Achievement in the last 5 years 【 display / non-display 】
-
【Published Thesis】 Amplification Chamber: Dissecting the Attack Infrastructure of Memcached DRDoS Attacks(DETECTION OF INTRUSIONS AND MALWARE, AND VULNERABILITY ASSESSMENT, DIMVA 2022) 2022
【Published Thesis】 Adaptive Observation of Emerging Cyber Attacks targeting Various IoT Devices 2021.05
【Published Thesis】 Disposable Botnets: Examining the Anatomy of IoT Botnet Infrastructure 2020.08
【Published Thesis】 Detect Me If You ... Oh Wait. An Internet-Wide View of Self-Revealing Honeypots 2019
【Published Thesis】 標的端末上でのみ動作するマルウェアに対するセキュリティアプライアンスの有効性評価(情報処理学会論文誌) 2019.09
Education 【 display / non-display 】
-
2014.4-2017.3
Yokohama National University Doctor Course Completed
-
2012.4-2014.3
Yokohama National University Master Course Completed
Campus Career 【 display / non-display 】
-
2021.4
Duty Yokohama National UniversityInstitute of Advanced Sciences Specially Appointed Associate Professor
-
2018.4-2021.3
Duty Yokohama National UniversityInstitute of Advanced Sciences Specially Appointed Assistant Professor
Research Areas 【 display / non-display 】
-
Informatics / Information security
Papers 【 display / non-display 】
-
Amplification Chamber: Dissecting the Attack Infrastructure of Memcached DRDoS Attacks
Kondo Mizuki, Tanabe Rui, Shintani Natsuo, Makita Daisuke, Yoshioka Katsunari, Matsumoto Tsutomu
DETECTION OF INTRUSIONS AND MALWARE, AND VULNERABILITY ASSESSMENT, DIMVA 2022 13358 178 - 196 2022
Language:Japanese Publishing type:Research paper (scientific journal) Joint Work
-
Disposable Botnets: Long-term Analysis of IoT Botnet Infrastructure
Tanabe Rui, Watanabe Tsuyufumi, Fujita Akira, Isawa Ryoichi, Gañán Carlos, Eeten Michel van, Yoshio … Show more authors
Tanabe Rui, Watanabe Tsuyufumi, Fujita Akira, Isawa Ryoichi, Gañán Carlos, Eeten Michel van, Yoshioka Katsunari, Matsumoto Tsutomu Hide authors
Journal of Information Processing 30 ( 0 ) 577 - 590 2022
Language:English Publishing type:Research paper (scientific journal) Publisher:一般社団法人 情報処理学会 Joint Work
<p>Large botnets made up of Internet-of-Things (IoT) devices have a steady presence in the threat landscape since 2016. However, it has not explained how attackers maintain control over their botnets. In this paper, we present a long-term analysis of the infrastructure of IoT botnets based on 36 months of data gathered via honeypots and the monitoring of botnet infrastructure. We collected 64,260 IoT malware samples, 35,494 download servers, and 4,736 C&C servers during 2016 to 2021. Not only are most binaries distributed for less than three days, but the connection of bots to the rest of the botnet is also short-lived. To reach the C&C server, the binaries typically contain only a single hard-coded IP address or domain. Long-term dynamic analysis finds no mechanism for the attackers to migrate the bots to a new C&C server. Although malware binaries that use domain names to connect to their C&C servers increased in 2020, the C&C servers themselves have a short lifespan and this tendency has not changed. The picture that emerges is that of highly disposable botnets. IoT botnets are reconstituted from scratch all the time rather than maintained.</p>
-
Adaptive Observation of Emerging Cyber Attacks targeting Various IoT Devices
Seiya Kato, Rui Tanabe, Katsunari Yoshioka, Tsutomu Matsumoto
IFIP/IEEE International Symposium on Integrated Network Management (IFIP/IEEE IM2021) 2021.5 [Reviewed]
Language:English Publishing type:Research paper (international conference proceedings) Joint Work
-
Guest Editorial: Special Issue on "15th Asia Joint Conference on Information Security, AsiaJCIS 2020"
Chen Yu-Chi, Tanabe Rui, Wang Yujue, Kim Huy Kang
JOURNAL OF INTERNET TECHNOLOGY 22 ( 5 ) 1157 - 1158 2021
Language:Japanese Publishing type:Research paper (scientific journal) Joint Work
-
Adaptive Observation of Emerging Cyber Attacks targeting Various IoT Devices
Kato Seiya, Tanabe Rui, Yoshioka Katsunari, Matsumoto Tsutomu
2021 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM 2021) 143 - 151 2021
Language:Japanese Publishing type:Research paper (scientific journal) Joint Work
Committee Memberships 【 display / non-display 】
-
コンピュータセキュリティシンポジウム2018
2018.10 プログラム委員
Committee type:Academic society
Social Contribution(Extension lecture) 【 display / non-display 】
-
コンピューターセキュリティシンポジウム2018
長野県、日本 2018.10