Portable Document Format, more commonly known as PDF, has become, in the last 20 years, a standard for document exchange and dissemination due its portable nature and widespread adoption. The flexibility and power of this format are not only leveraged by benign users, but from hackers as well who have been working to exploit various types of vulnerabilities, overcome security restrictions, and then transform the PDF format in one among the leading malicious code spread vectors. Analyzing the content of malicious PDF files to extract the main features that characterize the malware identity and behavior, is a fundamental task for modern threat intelligence platforms that need to learn how to automatically identify new attacks. This paper surveys existing state of the art about systems for the detection of malicious PDF files and organizes them in a taxonomy that separately considers the used approaches and the data analyzed to detect the presence of malicious code.
CITATION STYLE
Elingiusti, M., Aniello, L., Querzoni, L., & Baldoni, R. (2018). PDF-Malware detection: A Survey and taxonomy of current techniques. In Advances in Information Security (Vol. 70, pp. 169–191). Springer New York LLC. https://doi.org/10.1007/978-3-319-73951-9_9
Mendeley helps you to discover research relevant for your work.