Task-based behavior detection of illegal codes

Lansheng Han, Cai Fu, Deqing Zou, Chang Hoon Lee, Wenjing Jia

Research output: Contribution to journalArticlepeer-review

4 Scopus citations

Abstract

Detecting unseen illegal codes is always a challenging task. As the main action to deal with this problem, the behavior detection is unsatisfactory in both effectiveness and efficiency. This paper proposes task-based behavior detection (TBBD) which detects new illegal codes based on the user's task instead of only on the software behavior. First, the paper proposes three prerequisites of TBBD and four judgment rules, i.e., resource abnormal rule, relation abnormal rule, space abnormal rule and time abnormal rule. Then, by analyzing the effectiveness and comparison of the four judgment rules, we present an explicit judgment process of TBBD. Finally, the paper carries on the experiments. The test result verifies the validity and feasibility of TBBD.

Original languageEnglish
Pages (from-to)80-86
Number of pages7
JournalMathematical and Computer Modelling
Volume55
Issue number1-2
DOIs
StatePublished - Jan 2012

Keywords

  • Computer security
  • Illegal codes
  • Malicious codes
  • Task-based behavior detection

Fingerprint

Dive into the research topics of 'Task-based behavior detection of illegal codes'. Together they form a unique fingerprint.

Cite this