2014 Twelfth Annual International Conference on Privacy, Security and Trust 2014
DOI: 10.1109/pst.2014.6890946
|View full text |Cite
|
Sign up to set email alerts
|

Automated generation of models for fast and precise detection of HTTP-based malware

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1
1

Citation Types

0
21
0

Year Published

2016
2016
2024
2024

Publication Types

Select...
5
3
1

Relationship

0
9

Authors

Journals

citations
Cited by 29 publications
(21 citation statements)
references
References 11 publications
0
21
0
Order By: Relevance
“…Xie et al [28] proposed the system called AutoRE which generates regular expression signatures from URL structure to detect botnet-based spam emails and botnet membership. Zallas et al [29] also proposed the idea of generating templates, which are the name-value pairs of the HTTP headers. The generated templates can be used to detect HTTP-based malware.…”
Section: Related Workmentioning
confidence: 99%
“…Xie et al [28] proposed the system called AutoRE which generates regular expression signatures from URL structure to detect botnet-based spam emails and botnet membership. Zallas et al [29] also proposed the idea of generating templates, which are the name-value pairs of the HTTP headers. The generated templates can be used to detect HTTP-based malware.…”
Section: Related Workmentioning
confidence: 99%
“…Zarras et al [163] introduce BotHound, a detection method for malware communicating over HTTP. The system automatically generates models for benign and malicious requests and classifies new traffic in real-time.…”
Section: Web Traffic Detection and Analysis Systemsmentioning
confidence: 99%
“…This survey identified monitoring and data classification [12,27,121,124,148,156] as well as attack description, profiling and extraction to be a vital part of this stage of ATA identification [41,72,143,156]. Various detection systems spread across all the primary detection domains will help to assemble the picture [28,148,163].…”
Section: Data Provider Selectionmentioning
confidence: 99%
“…We expanded ExecScent to introduce the concept of invariability in substrings in HTTP requests. Zarras et al proposed the BotHound system to focus on the sequence of components in HTTP headers to generate templates [21]. BotProfiler does not use the sequence of HTTP headers, that is, it is a more lightweight system than BotHound.…”
Section: Generating Network-based Signatures or Templatesmentioning
confidence: 99%