Collaborative architecture for malware detection and analysis

13Citations
Citations of this article
21Readers
Mendeley users who have this article in their library.

This article is free to access.

Abstract

The constant increase of malware threats clearly shows that the present counter measures are not suf.cient especially because most actions are put in place only when infections have already spread. In this paper, we present an innovative collaborative architecture for malware analysis that aims to early detection and timely deployment of countermeasures. The proposed system is a multi-tier architecture where the sensor nodes are geographically distributed over multiple organizations. These nodes send alerts to intermediate managers that, in their turn, communicate with one logical collector and analyzer. Relevant information, that is determined by the automatic analysis of the malware behavior in a sandbox, and countermeasures are sent to all the cooperating networks. There are many other novel features in the proposal. The architecture is extremely scalable and exible because multiple levels of intermediate managers can be utilized depending on the complexity of the network of the participating organization. Cyphered communications among components help preventing the leakage of sensitive information and allow the pairwise authentication of the nodes involved in the information sharing. The feasibility of the proposed architecture is demonstrated through an operative prototype realized using open source software. © 2008 Springer Science+Business Media, LLC.

Cite

CITATION STYLE

APA

Colajanni, M., Gozzi, D., & Marchetti, M. (2008). Collaborative architecture for malware detection and analysis. In IFIP International Federation for Information Processing (Vol. 278, pp. 79–93). Springer New York. https://doi.org/10.1007/978-0-387-09699-5_6

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free