Sandbox Sample Classification Using Behavioral Indicators of Compromise

01/18/2022
by   M. Andrecut, et al.
0

Behavioral Indicators of Compromise are associated with various automated methods used to extract the sample behavior by observing the system function calls performed in a virtual execution environment. Thus, every sample is described by a set of BICs triggered by the sample behavior in the sandbox environment. Here we discuss a Machine Learning approach to the classification of the sandbox samples as MALICIOUS or BENIGN, based on the list of triggered BICs. Besides the more traditional methods like Logistic Regression and Naive Bayes Classification we also discuss a different approach inspired by the statistical Monte Carlo methods. The numerical results are illustrated using ThreatGRID and ReversingLabs data.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
06/01/2021

Logistic Regression Through the Veil of Imprecise Data

Logistic regression is an important statistical tool for assessing the p...
research
03/25/2018

Finite Sample Complexity of Sequential Monte Carlo Estimators

We present bounds for the finite sample error of sequential Monte Carlo ...
research
07/27/2021

Deep Neural Networks for Detecting Statistical Model Misspecifications. The Case of Measurement Invariance

While in recent years a number of new statistical approaches have been p...
research
05/07/2022

Evaluation of a User Authentication Schema Using Behavioral Biometrics and Machine Learning

The amount of secure data being stored on mobile devices has grown immen...
research
04/29/2023

Towards Discovering Erratic Behavior in Robotic Process Automation with Statistical Process Control

Companies that use robotic process automation very often deal with probl...
research
04/26/2020

Classification of Cuisines from Sequentially Structured Recipes

Cultures across the world are distinguished by the idiosyncratic pattern...

Please sign up or login with your details

Forgot password? Click here to reset