logo SBA

ETD

Archivio digitale delle tesi discusse presso l’Università di Pisa

Tesi etd-06132025-212728


Tipo di tesi
Tesi di laurea magistrale
Autore
BRACCINI, GIOVANNI
URN
etd-06132025-212728
Titolo
Using BlockChains to Generate and Distribute Deny Lists
Dipartimento
INFORMATICA
Corso di studi
INFORMATICA
Relatori
relatore Prof. Baiardi, Fabrizio
Parole chiave
  • blacklist automation
  • blockchain
  • botnet detection
  • decentralized security
  • denylist
  • distributed c2
  • honeypots
  • intrusion prevention
  • kex hashes
  • kex-filtering
  • orb botnets
  • proactive defense
  • secure blacklist distribution
  • ssh fingerprinting
  • threat intelligence
  • trust model
Data inizio appello
18/07/2025
Consultabilità
Non consultabile
Data di rilascio
18/07/2028
Riassunto
Kex-Filtering proactively detects SSH botnets by fingerprinting client configurations via KEX hashes, overcoming IP blacklist limits. Tested on Azure/AWS honeypots, it blocked 98.5% of attacks using tens of hashes (<2% false positives). Blacklists are dynamically updated via distributed C2 servers using trust, expiration, and thresholds. Multiple blockchain-based architectures are proposed to ensure secure, tamper-proof, and decentralized blacklist distribution. Analyses are conducted on the implementation feasibility of the method, and performance metrics are explored.
File