首页> 外文会议>International conference on cryptology and network security >Analysis of Rogue Anti-Virus Campaigns Using Hidden Structures in k-Partite Graphs
【24h】

Analysis of Rogue Anti-Virus Campaigns Using Hidden Structures in k-Partite Graphs

机译:使用k-Partite图中的隐藏结构分析流氓反病毒活动

获取原文

摘要

Driven by the potential economic profits, cyber-criminals are on the rise and use the Web to exploit unsuspecting users. Indeed, a real underground black market with thousands of collaborating organizations and individuals has developed, which brings together malicious users who trade exploits, malware, virtual assets, stolen credentials, and more. Among the various malicious activities of cyber-criminals, rogue security software campaigns have evolved into one of the most lucrative criminal operations on the Internet. In this paper, we present a novel method to analyze rogue security software campaigns, by studying a number of different features that are related to their operation. Contrary to existing data mining techniques for multivariate data, which are mostly based on the definition of appropriate proximity measures on a per-feature basis and data fusion techniques to combine per-feature mining results, we take advantage of the structural properties of the k-partite graph formed by considering the natural interconnections between objects of different types. We show that the proposed method is straightforward, fast and scalable. The results of the analysis of rogue security software campaigns are further assessed by a visual analysis tool and their accuracy is documented.
机译:在潜在的经济利润的驱动下,网络犯罪分子正在上升,并使用Web来利用毫无戒心的用户。实际上,已经开发出了一个真正的地下黑市,有成千上万的协作组织和个人,该黑市汇集了交易漏洞利用程序,恶意软件,虚拟资产,被盗凭证等的恶意用户。在网络犯罪分子的各种恶意活动中,流氓安全软件活动已发展成为互联网上最有利可图的犯罪活动之一。在本文中,我们通过研究与运行有关的许多不同功能,提出了一种分析流氓安全软件活动的新颖方法。与现有的用于多变量数据的数据挖掘技术相反,这些技术主要基于每个特征的适当邻近度的定义以及结合每个特征的挖掘结果的数据融合技术,我们利用了k-通过考虑不同类型对象之间的自然互连而形成的部分图。我们证明了所提出的方法是直接,快速和可扩展的。流氓安全软件活动的分析结果将通过视觉分析工具进一步评估,并记录其准确性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号