Identifying and Characterizing COVID-19 Themed Malicious Domain Campaigns

Pengcheng Xia, Mohamed Nabeel, Issa Khalil, Haoyu Wang, Ting Yu

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

11 Citations (Scopus)

Abstract

Ever since the beginning of the outbreak of the COVID-19 pandemic, attackers acted quickly to exploit the confusion, uncertainty and anxiety caused by the pandemic and launched various attacks through COVID-19 themed malicious domains. Malicious domains are rarely deployed independently, but rather almost always belong to much bigger and coordinated attack campaigns. Thus, analyzing COVID-themed malicious domains from the angle of attack campaigns would help us gain a deeper understanding of the scale, scope and sophistication of the threats imposed by such malicious domains. In this paper, we collect data from multiple sources, and identify and characterize COVID-themed malicious domain campaigns, including the evolution of such campaigns, their underlying infrastructures and the different strategies taken by attackers behind these campaigns. Our exploration suggests that some malicious domains have strong correlations, which can guide us to identify new malicious domains and raise alarms at the early stage of their deployment. The results shed light on the emergency for detecting and mitigating public event related cyber attacks.

Original languageEnglish
Title of host publicationCODASPY 2021 - Proceedings of the 11th ACM Conference on Data and Application Security and Privacy
PublisherAssociation for Computing Machinery, Inc
Pages209-220
Number of pages12
ISBN (Electronic)9781450381437
DOIs
Publication statusPublished - 26 Apr 2021
Event11th ACM Conference on Data and Application Security and Privacy, CODASPY 2021 - Virtual, Online, United States
Duration: 26 Apr 202128 Apr 2021

Publication series

NameCODASPY 2021 - Proceedings of the 11th ACM Conference on Data and Application Security and Privacy

Conference

Conference11th ACM Conference on Data and Application Security and Privacy, CODASPY 2021
Country/TerritoryUnited States
CityVirtual, Online
Period26/04/2128/04/21

Keywords

  • Covid-19
  • knowledge graph
  • malicious campaigns

Fingerprint

Dive into the research topics of 'Identifying and Characterizing COVID-19 Themed Malicious Domain Campaigns'. Together they form a unique fingerprint.

Cite this