Real-time malware detection framework in intrusion detection systems
- Title
- Real-time malware detection framework in intrusion detection systems
- Author
- 임을규
- Keywords
- intrusion detection system; malware analysis; network security; malware detection
- Issue Date
- 2013-10
- Publisher
- ACM New York, NY, USA
- Citation
- Proceedings of the 2013 Research in Adaptive & Convergent Systems, 2013, P.351-352
- Abstract
- We suggest an efficient framework to detect malware in Intrusion Detection System (IDS). The framework generates signatures from malware families and generates corresponding detection rules. The generated signatures are not influenced by small changes of malware while they can be used to detect malware that has similar behaviors with normal programs. Our signatures are stored as an Aho-Corasick Tree form to improve signature matching performance in IDS.
- URI
- https://dl.acm.org/citation.cfm?id=2513297https://repository.hanyang.ac.kr/handle/20.500.11754/73198
- ISBN
- 978-1-4503-2348-2
- DOI
- 10.1145/2513228.2513297
- Appears in Collections:
- COLLEGE OF ENGINEERING[S](공과대학) > COMPUTER SCIENCE(컴퓨터소프트웨어학부) > Articles
- Files in This Item:
There are no files associated with this item.
- Export
- RIS (EndNote)
- XLS (Excel)
- XML