10.1109/CICYBS.2009.4925095">
 

Using qualia and multi-layered relationships in malware detection

Document Type

Conference Proceeding

Publication Date

3-30-2009

Abstract

Detecting network intruders and malicious software is a significant problem for network administrators and security experts. New threats are emerging at an increasing rate, and current signature and statistics-based techniques are failing to keep pace. Intelligent systems that can adapt to new threats are needed to mitigate these new strains of malware as they are released. This research develops a system that uses contextual relationships and information across different layers of abstraction to detect malware based on its qualia, or essence. By looking for the underlying concepts that make a piece of software malicious, this system avoids the pitfalls of static solutions that focus on predefined signatures or anomaly thresholds. This type of qualia-based system provides a framework for developing intelligent classification and decision-making systems for any number of application areas. Abstract © IEEE.

Comments

Copyright © 2009, IEEE

Co-author B. Birrer was an AFIT PhD student at the time of this paper. (AFIT-DCS-ENG-10-01, March 2010)

Source Publication

2009 IEEE Symposium on Computational Intelligence in Cyber Security

This document is currently not available here.

Share

COinS