Using Deep Learning with Attention to Detect Data Exfiltration by POS Malware

Gabriele Martino, Federico Galatolo, Mario Cimino, Christian Callegari

2023

Abstract

In recent years, electronic payment through Point-of-Sale (POS) systems has become popular. For this reason, POS devices are becoming more targeted by cyber attacks. In particular, RAM scraping malware is the most dangerous threat: the card data is extracted from the process memory, during the transaction and before the encryption, and sent to the attacker. This paper focuses on the possibility to detect this kind of malware through anomaly detection based on Deep Learning with attention, using the network traffic with data exfiltration occurrences. To show the effectiveness of the proposed approach, real POS transaction traffic has been used, together with real malware traffic extracted from a collection of RAM scrapers. Early results show the high potential of the proposed approach, encouraging further comparative research. To foster further development, the data and source code have been publicly released.

Download


Paper Citation


in Harvard Style

Martino G., Galatolo F., Cimino M. and Callegari C. (2023). Using Deep Learning with Attention to Detect Data Exfiltration by POS Malware. In Proceedings of the 25th International Conference on Enterprise Information Systems - Volume 1: ICEIS, ISBN 978-989-758-648-4, SciTePress, pages 638-648. DOI: 10.5220/0011993900003467


in Bibtex Style

@conference{iceis23,
author={Gabriele Martino and Federico Galatolo and Mario Cimino and Christian Callegari},
title={Using Deep Learning with Attention to Detect Data Exfiltration by POS Malware},
booktitle={Proceedings of the 25th International Conference on Enterprise Information Systems - Volume 1: ICEIS,},
year={2023},
pages={638-648},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0011993900003467},
isbn={978-989-758-648-4},
}


in EndNote Style

TY - CONF

JO - Proceedings of the 25th International Conference on Enterprise Information Systems - Volume 1: ICEIS,
TI - Using Deep Learning with Attention to Detect Data Exfiltration by POS Malware
SN - 978-989-758-648-4
AU - Martino G.
AU - Galatolo F.
AU - Cimino M.
AU - Callegari C.
PY - 2023
SP - 638
EP - 648
DO - 10.5220/0011993900003467
PB - SciTePress