...
首页> 外文期刊>Information Security Technical Report >Watch out! Doxware on the way...
【24h】

Watch out! Doxware on the way...

机译:小心! Doxware在路上......

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

Malware remains the number one threat for individuals, enterprises, and governments. Malware's aftermath can cause irreversible casualties if the requirements of the attackers are not met in time. Security researchers' primary objective is protecting the assets that a person/company possesses. They are in a constant battle in this cyberware facing attackers' malicious intent. To compete in this arms race against security breaches, we propose an insight into plausible attacks, especially Doxware (also called leakware). We present a quantification model that explores the Windows file system in search of valuable data. It is based on the Term Frequency-Inverse Document Frequency (TF-IDF) solution provided in the literature for information retrieval. The highest-ranked files will be then exfiltrated over the Internet to the attacker's server. Then, we studied possible countermeasures including deception-based techniques. Amongst the existent ones, we implemented and tested one based on honeypot files and folders to protect users' assets. We conclude by presenting future perspectives in this area with the possible counter-countermeasures that can be used by an attacker to bypass current detection mechanisms. Our approach delivers an observation of the evolution of malware throughout the last years. It enables users to prevent their sensitive information from being exposed to potential risks.
机译:恶意软件仍然是个人,企业和政府的威胁。如果攻击者的要求没有及时达到攻击者的要求,恶意软件的后果可能会导致不可逆转的伤亡。安全研究人员的主要目标是保护个人/公司拥有的资产。他们在这个面对攻击者的恶意意图的讯息牌中处于不断的战斗中。为了竞争这一军备违规行为,我们建议深入了解合理的攻击,特别是Doxware(也称为泄漏件)。我们提出了一种量化模型,探讨了寻找有价值数据的Windows文件系统。它基于文献中提供的术语频率 - 逆文档频率(TF-IDF)解决方案,用于信息检索。然后,最高排名的文件将在Internet上删除到攻击者的服务器。然后,我们研究了可能的对策,包括基于欺骗性的技术。在存在的中,我们基于蜜罐文件和文件夹实现和测试,以保护用户的资产。我们通过在该领域提出未来的观点来得出结论,可能是可以由攻击者使用的可能对应力来绕过电流检测机制。我们的方法在过去几年中提供了对恶意软件的演变的观察。它使用户能够防止其敏感信息暴露于潜在风险。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号