Real-time malware detection framework in intrusion detection systems

Citations

SCOPUS

0

초록

We suggest an efficient framework to detect malware in Intrusion Detection System (IDS). The framework generates signatures from malware families and generates corresponding detection rules. The generated signatures are not influenced by small changes of malware while they can be used to detect malware that has similar behaviors with normal programs. Our signatures are stored as an Aho-Corasick Tree form to improve signature matching performance in IDS.

키워드

intrusion detection systemmalware analysismalware detectionnetwork securityAho-CorasickDetection rulesIntrusion Detection SystemsMalware analysisMalware detectionMalware familiesSignature-matchingTree formIntrusion detectionNetwork securityComputer crime
제목
Real-time malware detection framework in intrusion detection systems
저자
Kim, SunwooKim, TaeguenIm, Eul Gyu
DOI
10.1145/2513228.2513297
발행일
2013-10
유형
Conference Paper
저널명
Proceedings of the 2013 Research in Adaptive and Convergent Systems, RACS 2013
페이지
351 ~ 352