Applying antimalware logic without revealing the antimalware logic to adversaries

作者: Marc E. Seinfeld , Anil Francis Thomas , Jack Wilson Stokes , Ajith Kumar , Timothy Jon Fraser

DOI:

关键词: Computer securityNoise (video)Service (systems architecture)Feature selectionMalwareComputer science

摘要: The subject disclosure is directed towards a technology by which antimalware detection logic maintained and operated at backend service, with customer frontend machine communicates (queries) for purposes of malware detection. In this way, some techniques are the service rather than revealed to authors. may be based upon feature selection, updated rapidly, in manner that faster authors can track. Noise added results make it difficult deduce behind results. return indicating or not malware, inconclusive also detect probing-related queries part an attempt unrevealed logic, noisy returned response and/or other actions taken foil attempt.

参考文章(8)
Marc E. Seinfeld, Matthew I. Braverman, Adrian M. Marinescu, Method and system for protecting anti-malware programs ,(2005)
Stanley Chow, Faud Khan, Bassem Abdel-Aziz, Malware detection system and method ,(2008)
Angelos D. Keromytis, Ricardo A. Baratto, Debra L. Cook, Remotely Keyed CryptoGraphics - Secure Remote Display Access Using (Mostly) Untrusted Hardware - Extended Version Department of Computer Science, Columbia University. ,(2004) , 10.7916/D8M336XC
Rajesh Dadhia, Anil Thomas, Pradeep Bahl, Mihai Costea, Michael Kramer, Proactively protecting computers in a networking environment from malware ,(2005)
Marc Seinfeld, Chengyun Chu, Tony Lee, Ning Sun, Alexey Polyakov, Jigar J. Mody, Collecting and analyzing malware data ,(2008)
Yun Lin, Mihai Costea, Bypassing software services to detect malware ,(2006)