Bivariate Classification of Malware in Java']JavaScript using Dynamic Analysis

被引:0
|
作者
Gupta, Yash [1 ]
Bansal, Divya [1 ]
Sofat, Sanjeev [1 ]
机构
[1] PEC Univ Technol, Chandigarh, India
关键词
malicious [!text type='Java']Java[!/text]Script; dynamic analysis; classification; caffeine monkey;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
JavaScript is used as an attack vector to infect webpages to gain access to user's information. We present a tool that will dynamically analyze and perform bivariate classification of webpages as malicious or benign. We categorized the general behavior of JavaScript using datasets of known benign and malicious JavaScript by using a classifier which is trained on the basis of difference between function calls made by malicious and benign JavaScript and identification of Iframe tag in them. A Script is then matched to those categorizations to classify its behavior as malicious or benign. Here we have developed a light weight malicious JavaScript detection approach which can be used in real time as most of the existing techniques perform offline analysis.
引用
收藏
页码:178 / 182
页数:5
相关论文
共 50 条
  • [11] AUGUR: Dynamic Taint Analysis for Asynchronous Java']JavaScript
    Aldrich, Mark W.
    Turcotte, Alexi
    Blanco, Matthew
    Tip, Frank
    [J]. PROCEEDINGS OF THE 37TH IEEE/ACM INTERNATIONAL CONFERENCE ON AUTOMATED SOFTWARE ENGINEERING, ASE 2022, 2022,
  • [12] TypeDevil: Dynamic Type Inconsistency Analysis for Java']JavaScript
    Pradel, Michael
    Schuh, Parker
    Sen, Koushik
    [J]. 2015 IEEE/ACM 37TH IEEE INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, VOL 1, 2015, : 314 - 324
  • [13] Detection of Java']JavaScript of Malware with un-readability using Mahalanobis-distance
    Takamori, Kentaro
    Iwamoto, Mai
    Oshima, Shunsuke
    Nakashima, Takuo
    [J]. 2014 NINTH INTERNATIONAL CONFERENCE ON BROADBAND AND WIRELESS COMPUTING, COMMUNICATION AND APPLICATIONS (BWCCA), 2014, : 497 - 502
  • [14] JAVA']JAVASCRIPT MALWARE DETECTION USING A HIGH-LEVEL FUZZY PETRI NET
    Shen, Victor R. L.
    Wei, Chin-Shan
    Juang, Tony Tong-Ying
    [J]. PROCEEDINGS OF 2018 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS (ICMLC), VOL 2, 2018, : 511 - 514
  • [15] Obfuscated Malicious Java']Javascript Detection using Classification Techniques
    Likarish, Peter
    Jung, Eunjin E. J.
    Jo, Insoon
    [J]. 2009 4TH INTERNATIONAL CONFERENCE ON MALICIOUS AND UNWANTED SOFTWARE (MALWARE 2009), 2009, : 47 - +
  • [16] Protecting the intranet against "Java']JavaScript malware" and related attacks
    Johns, Martin
    Winter, Justus
    [J]. DETECTION OF INTRUSIONS AND MALWARE, AND VULNERABILITY ASSESSMENT, PROCEEDINGS, 2007, 4579 : 40 - +
  • [17] Malware Message Classification by Dynamic Analysis
    Bonfante, Guillaume
    Marion, Jean-Yves
    Thanh Dinh Ta
    [J]. FOUNDATIONS AND PRACTICE OF SECURITY (FPS 2014), 2015, 8930 : 112 - 128
  • [18] Change-aware Dynamic Program Analysis for Java']JavaScript
    Murthy, Dileep Ramachandrarao Krishna
    Pradel, Michael
    [J]. PROCEEDINGS 2018 IEEE INTERNATIONAL CONFERENCE ON SOFTWARE MAINTENANCE AND EVOLUTION (ICSME), 2018, : 127 - 137
  • [19] A New Malware Classification Approach Based on Malware Dynamic Analysis
    Fang, Ying
    Yu, Bo
    Tang, Yong
    Liu, Liu
    Lu, Zexin
    Wang, Yi
    Yang, Qiang
    [J]. INFORMATION SECURITY AND PRIVACY, ACISP 2017, PT II, 2017, 10343 : 173 - 189
  • [20] Accelerating Java']JavaScript Static Analysis via Dynamic Shortcuts
    Park, Joonyoung
    Park, Jihyeok
    Youn, Dongjun
    Ryu, Sukyoung
    [J]. PROCEEDINGS OF THE 29TH ACM JOINT MEETING ON EUROPEAN SOFTWARE ENGINEERING CONFERENCE AND SYMPOSIUM ON THE FOUNDATIONS OF SOFTWARE ENGINEERING (ESEC/FSE '21), 2021, : 1129 - 1140