Defeating Modern Day Anti-Viruses for Defense Evaluation


연구 분야: Safety



학회: 2022 International Conference on Frontiers of Information Technology (FIT)


초록

A system without an antivirus is just like a house with an open door. The majority of the attacks aim to compromise the endpoint. Anti-virus (AV) is used at the endpoint in conjunction with the firewall. With the increase in sophisticated attacks, many advancements have been done in AV. Now we see modern AV in the form of Endpoint Detection & Response (EDR). However, threat actors are still successful in evading EDR. Past research focuses on preventive measures in security rather than investigating how attack surface is increasing and AV won't help in defending our system. In this paper, we will present some techniques that can be used to evade modern-day next-generation AV. This research aims to help penetration testers and security researchers, to see how an advanced AV can be bypassed.


Author Profile
Abdul Basit Ajmal

Computer Science Department COMSATS University Islamabad Islamabad Pakistan

Pakistan
Author Profile
Shawal Khan

Computer Science Department COMSATS University Islamabad Islamabad Pakistan

Pakistan
Author Profile
Farhana Jabeen

Computer Science Department COMSATS University Islamabad Islamabad Pakistan

Pakistan

📄 논문 정보

발행 연도 2022년
인용수 3
출판 국가 Pakistan
사이트 IEEE
좋아요 수 0

연관 논문 목록 (343건)