首页> 外文会议>New security paradigms workshop 2009 >Server-Side Detection of Malware Infection
【24h】

Server-Side Detection of Malware Infection

机译:服务器端检测恶意软件感染

获取原文
获取原文并翻译 | 示例

摘要

We review the intertwined problems of malware and online fraud, and argue that the fact that service providers often are financially responsible for fraud causes a relative lack of incentives for clients to manage their own security well. This suggests the need for a server-side tool to determine the security posture of clients before letting them transact.rnWe introduce an exceedingly lightweight audit mechanism to address this need - permitting for post-mortem infection analysis - and prove its security properties based on standard cryptographic hardness assumptions. We describe a deployment architecture that aligns the incentives of participants in order to facilitate quick adoption and widespread use of the technology. Our approach is flexible enough to protect even low-end computing devices like mobile handsets, which future malware will target heavily, but whose power and bandwidth limitations result in poor effectiveness for traditional anti-virus solutions.rnA contribution of independent potential value is the enabling of a centralized analysis of malware-related events, which promises to extend the power of detection in comparison to what today's decentralized paradigm allows.
机译:我们回顾了恶意软件和在线欺诈的相互交织的问题,并认为服务提供商通常对欺诈负有经济责任这一事实导致相对缺乏激励客户良好管理自己的安全性的动机。这表明需要使用服务器端工具来确定客户端的安全状态,然后再进行交易。rn我们引入了一种极其轻量级的审核机制来满足这一需求-允许进行事后感染分析-并根据标准证明其安全性密码学硬度假设。我们描述了一种部署架构,该架构可调整参与者的动机,以促进该技术的快速采用和广泛使用。我们的方法足够灵活,甚至可以保护诸如手机之类的低端计算设备,而未来的恶意软件将重点锁定这些低端计算设备,但其功率和带宽限制导致传统防病毒解决方案的效果不佳。对与恶意软件相关的事件进行集中分析的结果,与当今的去中心化范式相比,它有望扩展检测能力。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号