2015 7th Conference on Information and Knowledge Technology (IKT) 2015
DOI: 10.1109/ikt.2015.7288733
|View full text |Cite
|
Sign up to set email alerts
|

Automatic signature generation for polymorphic worms by combination of token extraction and sequence alignment approaches

Abstract: As modern worms spread quickly; any countermeasure based on human reaction is barely fast enough to thwart the threat. Moreover, because polymorphic worms could generate mutated instances, they are more complex than non-mutating ones. Currently, the content-based signature generation of polymorphic worms is a challenge for network security. Several signature classes have been proposed for polymorphic worms. Although previously proposed schemes consider patterns such as I-byte invariants and distance restrictio… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1

Citation Types

0
1
0

Year Published

2018
2018
2020
2020

Publication Types

Select...
2
2

Relationship

0
4

Authors

Journals

citations
Cited by 4 publications
(1 citation statement)
references
References 25 publications
0
1
0
Order By: Relevance
“…Mondal et al [6] declared an automatic method that will generate signatures for the detection of polymorphic worms, and they applied Principal Component Analysis (PCA) for determining the critical substrings that appear mostly and are pooled amongst the instances of polymorphic worms for using them as signatures. Eskandari et al [7] proposed a signature generation scheme based on token extraction and multiple sequence alignment. However, these methods are usually based on the features manually presented, and then design an algorithm to detect worms.…”
Section: Introductionmentioning
confidence: 99%
“…Mondal et al [6] declared an automatic method that will generate signatures for the detection of polymorphic worms, and they applied Principal Component Analysis (PCA) for determining the critical substrings that appear mostly and are pooled amongst the instances of polymorphic worms for using them as signatures. Eskandari et al [7] proposed a signature generation scheme based on token extraction and multiple sequence alignment. However, these methods are usually based on the features manually presented, and then design an algorithm to detect worms.…”
Section: Introductionmentioning
confidence: 99%