亲爱的研友该休息了!由于当前在线用户较少,发布求助请尽量完整地填写文献信息,科研通机器人24小时在线,伴您度过漫漫科研夜!身体可是革命的本钱,早点休息,好梦!

An Evolutionary Study of IoT Malware

计算机科学 恶意软件 物联网 计算机安全
作者
Huanran Wang,Weizhe Zhang,Hui He,Peng Liu,Daniel Xiapu Luo,Yang Liu,Jiawei Jiang,Yan Li,Xing Zhang,Wenmao Liu,Runzi Zhang,Xing Lan
出处
期刊:IEEE Internet of Things Journal [Institute of Electrical and Electronics Engineers]
卷期号:8 (20): 15422-15440
标识
DOI:10.1109/jiot.2021.3063840
摘要

Recent years have witnessed lots of attacks targeted at the widespread Internet of Things (IoT) devices and malicious activities conducted by compromised IoT devices. After some notorious IoT malware released their source code, many new variants emerge, which are usually more powerful and stealthy. Although numerous existing studies have analyzed some exposed families, there is a lack of systematic study to make full use of them, which can be a fundamental step for provenance, triage, labeling, lineage analysis, and authorship attribution. The key challenge of conducting an IoT malware evolutionary study is how to collect sufficient and accurate information about malware and identify the relationships among them. In this article, we take the first step to investigate the IoT malware evolution by leveraging the information from two sources that complement each other. First, we crawl online articles about IoT malware and employ natural language processing techniques to extract the features of malware samples and their relationships with other malware family, which allow us to form the basic lineage graph. Second, we collect real malware samples through our widely deployed honeypots and design a new classifier to group them into families and identify lineage relationships among them. Such results are used to enhance the basic lineage graph. Eventually, we construct the final lineage graph for 72 IoT malware families by correlating the information from the aforementioned sources, which can help the research community better understand and fight IoT malware now and in the future. Our study has been incorporated into the threat awareness system of NSFOCUS company.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
福福完成签到 ,获得积分10
3秒前
sonshun完成签到 ,获得积分20
4秒前
9秒前
11秒前
sucan发布了新的文献求助10
13秒前
CKK应助初景采纳,获得10
18秒前
18秒前
123蒲发布了新的文献求助10
18秒前
sonshun发布了新的文献求助10
21秒前
科研通AI6.4应助Kryptonite采纳,获得100
21秒前
酷波er应助颜十三采纳,获得10
23秒前
28秒前
32秒前
32秒前
CYQ发布了新的文献求助10
36秒前
陈补天完成签到 ,获得积分10
36秒前
zing驳回了Akim应助
39秒前
舒心的以南完成签到,获得积分10
39秒前
难过谷雪发布了新的文献求助30
41秒前
Rainbow完成签到,获得积分10
42秒前
lululemontree完成签到,获得积分10
43秒前
imp完成签到,获得积分10
49秒前
53秒前
1分钟前
易安发布了新的文献求助10
1分钟前
舒适灵完成签到,获得积分10
1分钟前
1分钟前
1分钟前
一yi完成签到,获得积分10
1分钟前
颜十三发布了新的文献求助10
1分钟前
1分钟前
Lyzanilia完成签到 ,获得积分10
1分钟前
1分钟前
阿夏发布了新的文献求助10
1分钟前
lnx完成签到,获得积分10
1分钟前
1分钟前
cady应助qiu采纳,获得10
1分钟前
WW完成签到,获得积分10
1分钟前
1分钟前
Kryptonite发布了新的文献求助100
1分钟前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
The Organometallic Chemistry of the Transition Metals 800
Chemistry and Physics of Carbon Volume 18 800
The Organometallic Chemistry of the Transition Metals 800
Leading Academic-Practice Partnerships in Nursing and Healthcare: A Paradigm for Change 800
The formation of Australian attitudes towards China, 1918-1941 640
Signals, Systems, and Signal Processing 610
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 物理 内科学 复合材料 催化作用 物理化学 光电子学 电极 细胞生物学 基因 无机化学
热门帖子
关注 科研通微信公众号,转发送积分 6436304
求助须知:如何正确求助?哪些是违规求助? 8250774
关于积分的说明 17550835
捐赠科研通 5494564
什么是DOI,文献DOI怎么找? 2898025
邀请新用户注册赠送积分活动 1874709
关于科研通互助平台的介绍 1715916