Comparative Review of Malware Analysis Methodologies

12/07/2021
by   Ioannis G. Kiachidis, et al.
0

To fight against the evolution of malware and its development, the specific methodologies that are applied by the malware analysts are crucial. Yet, this is something often overlooked in the relevant bibliography or in the formal and informal training of the relevant professionals. There are only two generic and all-encompassing structured methodologies for Malware Analysis (MA) - SAMA and MARE. The question is whether they are adequate and there is no need for another one or whether there is no such need at all. This paper will try to answer the above and it will contribute in the following ways: it will present, compare and dissect those two malware analysis methodologies, it will present their capacity for analysing modern malware by applying them on a random modern specimen and finally, it will conclude on whether there is a procedural optimization for malware analysis over the evolution of these two methodologies.

READ FULL TEXT
research
04/17/2023

IMCDCF: An Incremental Malware Detection Approach Using Hidden Markov Models

The popularity of dynamic malware analysis has grown significantly, as i...
research
10/13/2022

SoK: How Not to Architect Your Next-Generation TEE Malware?

Besides Intel's SGX technology, there are long-running discussions on ho...
research
07/14/2023

Evaluation Methodologies in Software Protection Research

Man-at-the-end (MATE) attackers have full control over the system on whi...
research
04/04/2021

Marked for Disruption: Tracing the Evolution of Malware Delivery Operations Targeted for Takedown

The malware and botnet phenomenon is among the most significant threats ...
research
12/09/2022

A Bayesian Model Combination-based approach to Active Malware Analysis

Active Malware Analysis involves modeling malware behavior by executing ...
research
09/09/2021

Malware Sight-Seeing: Accelerating Reverse-Engineering via Point-of-Interest-Beacons

New types of malware are emerging at concerning rates. However, analyzin...
research
05/28/2019

Hydras and IPFS: A Decentralised Playground for Malware

Modern malware can take various forms, and has reached a very high level...

Please sign up or login with your details

Forgot password? Click here to reset