Behavior-based Spyware Detection: Using Dynamic Taint Analysis - Manuel Egele - 图书 - VDM Verlag - 9783639022063 - 2008年5月14日
如封面与标题不符,以标题为准

Behavior-based Spyware Detection: Using Dynamic Taint Analysis

价格
元 393
不含税

远程仓调货

预计送达时间 年5月28日 - 年6月15日
添加至iMusic心愿单

Generating good signatures for the current anti-spyware toolkits and deploying them in a timely fashion is a demanding task. Even if the signatures are up-to-date, signature based detection techniques usually suffer from the inability to detect novel and unknown threats. We believe that behavior-based approaches are capable of overcoming this drawback. To this end, we implemented TQAna. Our tool is based on taint analysis and function call hooking to provide dynamic analysis that is carried out on an emulated system. Taint analysis, as implemented with TQAna, provides the ability to track data throughout the whole system on hardware level. The observed functions cover most aspects of the Windows operating system, such as network-, and file system access, shared memory, or the dynamic loader. This book addresses system and security researchers in the fields of operating systems and malicious software analysis.

介质类型 图书     Paperback Book   (平装胶订图书)
已发行 2008年5月14日
ISBN13 9783639022063
出版商 VDM Verlag
页数 76
商品尺寸 150 × 220 × 10 mm   ·   113 g
语言 英语