基本信息来源于合作网站,原文需代理用户跳转至来源网站获取       
摘要:
Dynamic analysis of malware allows us to examine malware samples, and then group those samples into families based on observed behavior. Using Boolean variables to represent the presence or absence of a range of malware behavior, we create a bitstring that represents each malware behaviorally, and then group samples into the same class if they exhibit the same behavior. Combining class definitions with malware discovery dates, we can construct a timeline of showing the emergence date of each class, in order to examine prevalence, complexity, and longevity of each class. We find that certain behavior classes are more prevalent than others, following a frequency power law. Some classes have had lower longevity, indicating that their attack profile is no longer manifested by new variants of malware, while others of greater longevity, continue to affect new computer systems. We verify for the first time commonly held intuitions on malware evolution, showing quantitatively from the archaeological record that over 80% of the time, classes of higher malware complexity emerged later than classes of lower complexity. In addition to providing historical perspective on malware evolution, the methods described in this paper may aid malware detection through classification, leading to new proactive methods to identify malicious software.
推荐文章
Diagenetic evolution of clastic reservoirs and its records in fine subsection: significance and appl
Tight sandstone reservoirs
Diagenetic evolution
Fine subsection
Significance
Quantifying the carbon source of pedogenic calcite veins in weathered limestone: implications for th
Mg isotope
Calcite veins
Pedogenic carbonate
Silicate weathering
Carbonate weathering
In-situ sulfur isotope and trace element of pyrite constraints on the formation and evolution of the
Nibao Carlin-type gold deposit
Pyrite
NanoSIMS
LA-ICP-MS
Sulfur isotopes
内容分析
关键词云
关键词热度
相关文献总数  
(/次)
(/年)
文献信息
篇名 Quantifying Malware Evolution through Archaeology
来源期刊 信息安全(英文) 学科 医学
关键词 MALWARE CLASSIFICATION EVOLUTION DYNAMIC Analysis
年,卷(期) 2015,(2) 所属期刊栏目
研究方向 页码范围 101-110
页数 10页 分类号 R73
字数 语种
DOI
五维指标
传播情况
(/次)
(/年)
引文网络
引文网络
二级参考文献  (0)
共引文献  (0)
参考文献  (0)
节点文献
引证文献  (0)
同被引文献  (0)
二级引证文献  (0)
2015(0)
  • 参考文献(0)
  • 二级参考文献(0)
  • 引证文献(0)
  • 二级引证文献(0)
研究主题发展历程
节点文献
MALWARE
CLASSIFICATION
EVOLUTION
DYNAMIC
Analysis
研究起点
研究来源
研究分支
研究去脉
引文网络交叉学科
相关学者/机构
期刊影响力
信息安全(英文)
季刊
2153-1234
武汉市江夏区汤逊湖北路38号光谷总部空间
出版文献量(篇)
230
总下载数(次)
0
总被引数(次)
0
论文1v1指导