Machine Learning for Offensive Security: Sandbox Classification Using Decision Trees and Artificial Neural Networks

07/14/2020
by   Will Pearce, et al.
0

The merits of machine learning in information security have primarily focused on bolstering defenses. However, machine learning (ML) techniques are not reserved for organizations with deep pockets and massive data repositories; the democratization of ML has lead to a rise in the number of security teams using ML to support offensive operations. The research presented here will explore two models that our team has used to solve a single offensive task, detecting a sandbox. Using process list data gathered with phishing emails, we will demonstrate the use of Decision Trees and Artificial Neural Networks to successfully classify sandboxes, thereby avoiding unsafe execution. This paper aims to give unique insight into how a real offensive team is using machine learning to support offensive operations.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
11/03/2019

Potential Applications of Machine Learning at Multidisciplinary Medical Team Meetings

While machine learning (ML) systems have produced great advances in seve...
research
04/15/2017

Machine Learning and the Future of Realism

The preceding three decades have seen the emergence, rise, and prolifera...
research
02/26/2020

A Simple and Agile Cloud Infrastructure to Support Cybersecurity Oriented Machine Learning Workflows

Generating up to date, well labeled datasets for machine learning (ML) s...
research
11/27/2018

What is Interpretable? Using Machine Learning to Design Interpretable Decision-Support Systems

Recent efforts in Machine Learning (ML) interpretability have focused on...
research
06/16/2020

Toward Theory of Applied Learning. What is Machine Learning?

Various existing approaches to formalize machine learning (ML) problem a...
research
10/21/2019

Extracting local switching fields in permanent magnets using machine learning

Microstructural features play an important role for the quality of perma...
research
05/10/2019

A Scheme for Continuous Input to the Tsetlin Machine with Applications to Forecasting Disease Outbreaks

In this paper, we apply a new promising tool for pattern classification,...

Please sign up or login with your details

Forgot password? Click here to reset