What is it about?
Experimentation is critical to understanding the malware operation and to evaluating potential defenses. However, constructing the controlled environments needed for this experimentation is both time-consuming and error-prone. In this study, we highlight several common mistakes made by researchers and conclude that existing evaluations of malware detection techniques often lack in both flexibility and transparency. For instance, we show that small variations in the malware’s behavioral parameters can have a significant impact on the evaluation results. These variations, if unexplored, may lead to overly optimistic conclusions and detection systems that are ineffective in practice. To overcome these issues, we propose a framework to model malware behavior and guide systematic parameter selection. We evaluate our framework using a synthetic botnet executed within the CyberVAN testbed. Our study is intend
Featured Image
Read the Original
This page is a summary of: Malware modeling and experimentation through parameterized behavior, The Journal of Defense Modeling and Simulation Applications Methodology Technology, August 2017, SAGE Publications,
DOI: 10.1177/1548512917721755.
You can read the full text:
Contributors
The following have contributed to this page







