loading
Papers Papers/2022 Papers Papers/2022

Research.Publish.Connect.

Paper

Authors: Vincent Raulin 1 ; Pierre-François Gimenez 2 ; Yufei Han 1 and Valérie Viet Triem Tong 2

Affiliations: 1 Inria, Univ. Rennes, IRISA, Rennes, France ; 2 CentraleSupélec, Univ. Rennes, IRISA, Rennes, France

Keyword(s): Malware Analysis, Visualization, Dynamic Analysis.

Abstract: Malware analysis consists of studying a sample of suspicious code to understand it and producing a representation or explanation of this code that can be used by a human expert or a clustering/classification/detection tool. The analysis can be static (only the code is studied) or dynamic (only the interaction between the code and its host during one or more executions is studied). The quality of the interpretation of a code and its later detection depends on the quality of the information contained in this representation. To date, many analyses produce voluminous reports that are difficult to handle quickly. In this article, we present BAGUETTE, a graph-based representation of the interactions of a sample and the resources offered by the host system during one execution. We explain how BAGUETTE helps automatically search for specific behaviors in a malware database and how it efficiently assists the expert in analyzing samples.

CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 3.145.32.95

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Raulin, V. ; Gimenez, P. ; Han, Y. and Viet Triem Tong, V. (2023). BAGUETTE: Hunting for Evidence of Malicious Behavior in Dynamic Analysis Reports. In Proceedings of the 20th International Conference on Security and Cryptography - SECRYPT; ISBN 978-989-758-666-8; ISSN 2184-7711, SciTePress, pages 417-424. DOI: 10.5220/0012086400003555

@conference{secrypt23,
author={Vincent Raulin and Pierre{-}Fran\c{c}ois Gimenez and Yufei Han and Valérie {Viet Triem Tong}},
title={BAGUETTE: Hunting for Evidence of Malicious Behavior in Dynamic Analysis Reports},
booktitle={Proceedings of the 20th International Conference on Security and Cryptography - SECRYPT},
year={2023},
pages={417-424},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0012086400003555},
isbn={978-989-758-666-8},
issn={2184-7711},
}

TY - CONF

JO - Proceedings of the 20th International Conference on Security and Cryptography - SECRYPT
TI - BAGUETTE: Hunting for Evidence of Malicious Behavior in Dynamic Analysis Reports
SN - 978-989-758-666-8
IS - 2184-7711
AU - Raulin, V.
AU - Gimenez, P.
AU - Han, Y.
AU - Viet Triem Tong, V.
PY - 2023
SP - 417
EP - 424
DO - 10.5220/0012086400003555
PB - SciTePress