首页> 外文会议>Multimedia Information Networking and Security, 2009. MINES '09 >A Novel Anomaly Detection Approach for Executable Program Security
【24h】

A Novel Anomaly Detection Approach for Executable Program Security

机译:一种可执行程序安全性的新型异常检测方法

获取原文

摘要

Anomaly detection of executable program is a security detection solution that examines whether security violation issues exist in programs. The paper presents a novel anomaly detection approach for executable program security (ADEPS), which monitors program executions and detects anomalous program behaviors. Through reverse analysis of executable program, critical behavior monitoring points can be extracted from binary code sequences and memory space. A hybrid neural network model is proposed to detect abnormal attacks and classify detected attacks from actual program behaviors. The experimental results demonstrate that the proposed approach can effectively and accurately perform anomaly detection.
机译:可执行程序的异常检测是一种安全检测解决方案,用于检查程序中是否存在安全违规问题。本文提出了一种用于可执行程序安全性(ADEPS)的新颖异常检测方法,该方法可监视程序执行并检测异常程序行为。通过对可执行程序进行反向分析,可以从二进制代码序列和内存空间中提取关键行为监视点。提出了一种混合神经网络模型,用于检测异常攻击并根据实际程序行为对检测到的攻击进行分类。实验结果表明,该方法可以有效,准确地进行异常检测。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号