Detecting Motifs in System Call Sequences

02/02/2010
by   William O. Wilson, et al.
0

The search for patterns or motifs in data represents an area of key interest to many researchers. In this paper we present the Motif Tracking Algorithm, a novel immune inspired pattern identification tool that is able to identify unknown motifs which repeat within time series data. The power of the algorithm is derived from its use of a small number of parameters with minimal assumptions. The algorithm searches from a completely neutral perspective that is independent of the data being analysed, and the underlying motifs. In this paper the motif tracking algorithm is applied to the search for patterns within sequences of low level system calls between the Linux kernel and the operating system's user space. The MTA is able to compress data found in large system call data sets to a limited number of motifs which summarise that data. The motifs provide a resource from which a profile of executed processes can be built. The potential for these profiles and new implications for security research are highlighted. A higher level call system language for measuring similarity between patterns of such calls is also suggested.

READ FULL TEXT
research
04/22/2010

Motif Detection Inspired by Immune Memory

The search for patterns or motifs in data represents an area of key inte...
research
05/31/2013

Motif Detection Inspired by Immune Memory (JORS)

The search for patterns or motifs in data represents an area of key inte...
research
08/15/2016

SandBlaster: Reversing the Apple Sandbox

In order to limit the damage of malware on Mac OS X and iOS, Apple uses ...
research
06/08/2010

The Motif Tracking Algorithm

The search for patterns or motifs in data represents a problem area of k...
research
06/16/2023

Calculating the matrix profile from noisy data

The matrix profile (MP) is a data structure computed from a time series ...
research
01/05/2020

Data Curves Clustering Using Common Patterns Detection

For the past decades we have experienced an enormous expansion of the ac...
research
06/07/2023

Tree-Regularized Bayesian Latent Class Analysis for Improving Weakly Separated Dietary Pattern Subtyping in Small-Sized Subpopulations

Dietary patterns synthesize multiple related diet components, which can ...

Please sign up or login with your details

Forgot password? Click here to reset