ELF Analyzer Demo: Online Identification for IoT Malwares with Multiple Hardware Architectures


연구 분야: Safety



학회: 2020 IEEE Security and Privacy Workshops (SPW)


초록

This demonstration presents an automatic IoT runtime platform with a web interface, ELF Analyzer, where suspicious ELF files uploaded by users could be executed and dynamically analyzed for malicious behavior identification. The key component of our platform is a crafted IoT sandbox, where multiple hardware architectures are emulated using QEMU. With the introduction of strace functionality, we demonstrate that system call and traffic logs of an uploaded ELF file with different hardware architectures can be generated successfully. After proper analysis, malicious ELF files can be identified.


Author Profile
Shin-Ming Cheng

Research Center for Information Technology Innovation Academia Sinica Taipei Taiwan

Taiwan
Author Profile
Tao Ban

Cybersecurity Laboratory National Institute of Information and Communications Technology Tokyo Japan

Andorra
Author Profile
Jr-Wei Huang

Department of Computer Science and Information Engineering National Taiwan University of Science and Technology Taipei Taiwan

Andorra

📄 논문 정보

발행 연도 2020년
인용수 4
출판 국가 Taiwan, Andorra
사이트 IEEE
좋아요 수 0

연관 논문 목록 (27건)