Compiling and Analyzing Open Source Malware for Research Purposes


연구 분야: Safety



학회: 2020 International Conference on Software Security and Assurance (ICSSA)


초록

Malware obfuscation can make both automatic and manual analysis of its binary code and the contained functionality significantly more time consuming. For malware research it would therefore be useful to be able to study the effects of different obfuscation methods on the resulting binary code. While some obfuscations are applied through rewriting of the binary, others have to be applied at source code level or during compile time. However, the source code of in-the-wild malware is often not available. For this paper, we collected the source code of eleven open source malware samples from the past 12 years and analyzed if they still compile on current systems. Furthermore, basic static analysis was performed to evaluate the usefulness of the resulting binaries for further malware obfuscation research. Our results indicate, that it is possible to compile available samples with moderate effort and the resulting binaries are very well suited for research purposes.


Author Profile
Daniel Judt

Institute of IT Security Research St. Pölten University of Applied Sciences Austria

Austria
Author Profile
Patrick Kochberger

Institute of IT Security Research St. Pölten University of Applied Sciences Austria

Austria
Author Profile
Peter Kieseberg

JRC Blockchains Institute of IT Security Research St. Pölten University of Applied Sciences Austria

Austria

📄 논문 정보

발행 연도 2020년
인용수 1
출판 국가 Austria
사이트 IEEE
좋아요 수 0

연관 논문 목록 (338건)