Using Deep Learning with Attention to Detect Data Exfiltration by POS Malware
Gabriele Martino, Federico Galatolo, Mario Cimino, Christian Callegari
2023
Abstract
In recent years, electronic payment through Point-of-Sale (POS) systems has become popular. For this reason, POS devices are becoming more targeted by cyber attacks. In particular, RAM scraping malware is the most dangerous threat: the card data is extracted from the process memory, during the transaction and before the encryption, and sent to the attacker. This paper focuses on the possibility to detect this kind of malware through anomaly detection based on Deep Learning with attention, using the network traffic with data exfiltration occurrences. To show the effectiveness of the proposed approach, real POS transaction traffic has been used, together with real malware traffic extracted from a collection of RAM scrapers. Early results show the high potential of the proposed approach, encouraging further comparative research. To foster further development, the data and source code have been publicly released.
DownloadPaper Citation
in Harvard Style
Martino G., Galatolo F., Cimino M. and Callegari C. (2023). Using Deep Learning with Attention to Detect Data Exfiltration by POS Malware. In Proceedings of the 25th International Conference on Enterprise Information Systems - Volume 1: ICEIS, ISBN 978-989-758-648-4, SciTePress, pages 638-648. DOI: 10.5220/0011993900003467
in Bibtex Style
@conference{iceis23,
author={Gabriele Martino and Federico Galatolo and Mario Cimino and Christian Callegari},
title={Using Deep Learning with Attention to Detect Data Exfiltration by POS Malware},
booktitle={Proceedings of the 25th International Conference on Enterprise Information Systems - Volume 1: ICEIS,},
year={2023},
pages={638-648},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0011993900003467},
isbn={978-989-758-648-4},
}
in EndNote Style
TY - CONF
JO - Proceedings of the 25th International Conference on Enterprise Information Systems - Volume 1: ICEIS,
TI - Using Deep Learning with Attention to Detect Data Exfiltration by POS Malware
SN - 978-989-758-648-4
AU - Martino G.
AU - Galatolo F.
AU - Cimino M.
AU - Callegari C.
PY - 2023
SP - 638
EP - 648
DO - 10.5220/0011993900003467
PB - SciTePress