Searching for just a few words should be enough to get started. If you need to make more complex queries, use the tips below to guide you.
Article type: Research Article
Authors: Grégio, Andréa; * | Bonacin, Rodrigoa; b | de Marchi, Antonio Carlosb | Nabuco, Olga Fernandaa | de Geus, Paulo Lícioc
Affiliations: [a] Center for Information Technology Renato Archer (CTI), Campinas, São Paulo, Brazil. E-mails: [email protected], [email protected], [email protected] | [b] FACCAMP, Campo Limpo Paulista/SP, Brazil. E-mail: [email protected] | [c] University of Campinas (Unicamp), Campinas, São Paulo, Brazil. E-mail: [email protected]
Correspondence: [*] Corresponding author. E-mail: [email protected].
Note: [] Accepted by: Leo Obrst
Abstract: Malicious programs have been the main actors in complex, sophisticated attacks against nations, governments, diplomatic agencies, private institutions and people. Knowledge about malicious program behavior forms the basis for constructing more secure information systems. In this article, we introduce MBO, a Malicious Behavior Ontology that represents complex behaviors of suspicious executions, and through inference rules calculates their associated threat level for analytical proposals. We evaluate MBO using over two thousand unique known malware and 385 unique known benign software. Results highlight the representativeness of the MBO for expressing typical malicious activities.
Keywords: Security ontology, malware behavior, threat analysis
DOI: 10.3233/AO-160163
Journal: Applied Ontology, vol. 11, no. 1, pp. 29-49, 2016
IOS Press, Inc.
6751 Tepper Drive
Clifton, VA 20124
USA
Tel: +1 703 830 6300
Fax: +1 703 830 2300
[email protected]
For editorial issues, like the status of your submitted paper or proposals, write to [email protected]
IOS Press
Nieuwe Hemweg 6B
1013 BG Amsterdam
The Netherlands
Tel: +31 20 688 3355
Fax: +31 20 687 0091
[email protected]
For editorial issues, permissions, book requests, submissions and proceedings, contact the Amsterdam office [email protected]
Inspirees International (China Office)
Ciyunsi Beili 207(CapitaLand), Bld 1, 7-901
100025, Beijing
China
Free service line: 400 661 8717
Fax: +86 10 8446 7947
[email protected]
For editorial issues, like the status of your submitted paper or proposals, write to [email protected]
如果您在出版方面需要帮助或有任何建, 件至: [email protected]