Please use this identifier to cite or link to this item: http://repositorio.unicamp.br/jspui/handle/REPOSIP/320376
Type: Artigo de Periódico
Title: An Ontology Of Suspicious Software Behavior
Author: Gregio
A; Bonacin
R; de Marchi
AC; Nabuco
OF; de Geus
PL
Abstract: Malicious programs have been the main actors in complex, sophisticated attacks against nations, governments, diplomatic agencies, private institutions and people. Knowledge about malicious program behavior forms the basis for constructing more secure information systems. In this article, we introduce MBO, a Malicious Behavior Ontology that represents complex behaviors of suspicious executions, and through inference rules calculates their associated threat level for analytical proposals. We evaluate MBO using over two thousand unique known malware and 385 unique known benign software. Results highlight the representativeness of the MBO for expressing typical malicious activities.
Subject: Security Ontology
Malware Behavior
Threat Analysis
Editor: IOS PRESS
Citation: Applied Ontology. IOS PRESS, n. 11, n. 1, p. 29 - 49.
Rights: fechado
Identifier DOI: 10.3233/AO-160163
Address: http://content.iospress.com/articles/applied-ontology/ao163
Date Issue: 2016
Appears in Collections:Unicamp - Artigos e Outros Documentos

Files in This Item:
There are no files associated with this item.


Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.