Botnet
What is Botnet?
A network of compromised computers (bots) controlled remotely by a threat actor to perform coordinated malicious activities such as distributed denial-of-service attacks, spam distribution, or cryptocurrency mining.
Terms that appear alongside botnet
Each of these is named in at least one of the same controls as botnet. The number is how many controls name both.
- malware 2 shared controls
- crisis management 2 shared controls
- resilience 2 shared controls
- nist 2 shared controls
Frameworks that govern botnet
What the standards actually require on botnet
Requirements naming botnet across 4 standards, quoted from the control text.
Prepare for and respond to IoT-specific incidents including botnet recruitment, physical compromise and large-scale device failures.
27400-10.2 · Incident Response for IoT →Security Dimension 7 Availability per X.805 Clause 6.7: Availability ensures that there is no denial of authorized access to network elements + stored information + information flows + services and applications due to events impacting the network.
X805-Dim7-Availability-Network-Resources-Information-Authorized-Access-No-Service-Denial · ITU-T X.805 Security Dimension 7 - Availability + Network Resources + Information Accessible to Authorized Users + Denial-of-Service Prevention + Resilience + Redundancy + Disaster Recovery + Business Continuity + DDoS Mitigation →Audit + Drills + Training operationalise the Directions through ongoing assurance + cyber preparedness. (1) CERT-In Cyber Security Audit: organisations should undergo periodic cyber security audit by CERT-In Empanelled Information Security Auditing Organisatio...
CERTIN-Audit-Drills-Training-AwarenessProgram-CERTInExercises-CISO · CERT-In Audit + Cyber Security Drills + Training + Awareness + CERT-In Cyber Exercises + CISO + Information Security Auditor Empanelment →Apply D3FEND DETECT tactic to identify malicious activity occurring within an environment through observation of digital artifacts. D3-FA File Analysis (D3-FC File Carving + D3-FCR File Content Rules + D3-FH File Hashing + D3-DA Dynamic Analysis + D3-SAA Stati...
MITRE-D3FEND-Detect-Tactic-File-Process-Network-Identifier-Message-Platform-Analysis-SIEM-EDR · MITRE D3FEND Detect Tactic + File + Process + Network + Identifier + Message + Platform Analysis + SIEM + EDR →Questions people ask about botnet
What is Botnet?
Why is Botnet important for compliance?
Which compliance frameworks address Botnet?
Where can I learn more about Botnet?
See how Botnet applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.