A Transformation-based Model of Malware Derivation

被引:0
|
作者
Walenstein, Andrew [1 ]
Lakhotia, Arun [2 ]
机构
[1] Univ Louisiana Lafayette, Sch Comp Sci & Informat, Lafayette, LA 70504 USA
[2] Univ Louisiana, Ctr Adv Comp Studies, Lafayette, LA USA
关键词
malware; provenance; derivation; phylogeny; evolution; genome; polymorphism; attribution;
D O I
暂无
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Since most malware is derived from prior code, understanding malware derivation and evolution is essential for many types of malware analysis. However prior models of malware relationships are insufficiently precise or fail to capture important relationships. A framework is proposed that treats both production and evolution uniformly as compositions of code transformations, and distinguishes disjoint but interleaved evolution of production code and malware code. Evolution relations are defined in terms of path patterns on derivation graphs; this generalizes and formalizes the relationship between phylogenies and provenance graphs. The comprehensiveness of the modeling framework is demonstrated using examples from the literature; implications for future work in relationship reconstruction are drawn.
引用
收藏
页码:17 / 25
页数:9
相关论文
共 50 条
  • [1] A TRANSFORMATION-BASED DERIVATION OF THE KALMAN FILTER AND AN EXTENSIVE UNSCENTED TRANSFORM
    Faubel, Friedrich
    Klakow, Dietrich
    [J]. 2009 IEEE/SP 15TH WORKSHOP ON STATISTICAL SIGNAL PROCESSING, VOLS 1 AND 2, 2009, : 161 - 164
  • [2] Transformation-based structure model evolution
    Büttner, F
    [J]. SATELLITE EVENTS AT THE MODELS 2005 CONFERENCE, 2006, 3844 : 339 - 340
  • [3] Model Transformation-based Eigenstate Control of Quantum Systems
    Kuang Sen
    Cong Shuang
    Shuang Feng
    [J]. PROCEEDINGS OF THE 31ST CHINESE CONTROL CONFERENCE, 2012, : 7145 - 7148
  • [4] Transformation-based estimation
    Feng, Zhenghui
    Wang, Tao
    Zhu, Lixing
    [J]. COMPUTATIONAL STATISTICS & DATA ANALYSIS, 2014, 78 : 186 - 205
  • [5] Transformation-based model averaged tail area inference
    Yu, Wei
    Xu, Wangli
    Zhu, Lixing
    [J]. COMPUTATIONAL STATISTICS, 2014, 29 (06) : 1713 - 1726
  • [6] INCREMENTAL DESIGN OF ONTOLOGIES A Model Transformation-based Approach
    Teguiak, Henry Valery
    Ait-Ameur, Yamine
    Jean, Stephane
    Sardet, Eric
    [J]. KEOD 2010: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON KNOWLEDGE ENGINEERING AND ONTOLOGY DEVELOPMENT, 2010, : 94 - 103
  • [7] Transformation-based model averaged tail area inference
    Wei Yu
    Wangli Xu
    Lixing Zhu
    [J]. Computational Statistics, 2014, 29 : 1713 - 1726
  • [8] A transformation-based optimiser for Haskell
    Jones, SLP
    Santos, ALM
    [J]. SCIENCE OF COMPUTER PROGRAMMING, 1998, 32 (1-3) : 3 - 47
  • [9] Transformation-based spatial join
    Song, JW
    Whang, KY
    Lee, YK
    Lee, MJ
    Kim, SW
    [J]. PROCEEDINGS OF THE EIGHTH INTERNATIONAL CONFERENCE ON INFORMATION KNOWLEDGE MANAGEMENT, CIKM'99, 1999, : 15 - 26
  • [10] An Intelligent Malware Classification Model Based on Image Transformation
    Rizka, Mohamed Abo
    Hamed, Mohamed
    Khater, Hatem A.
    [J]. INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2023, 14 (07) : 828 - 837