• DocumentCode
    3761674
  • Title

    Automated signature generation for polymorphic worms using substrings extraction and principal component analysis

  • Author

    Avijit Mondal;Subrata Paul;Anirban Mitra;Biswajit Gope

  • Author_Institution
    Department of IT, BCET, Durgapur, West Bengal, India
  • fYear
    2015
  • Firstpage
    1
  • Lastpage
    4
  • Abstract
    Internet Security system has been largely threatened due to increase in Internet Worms at an alarming rate. Intrusion Detection System signature has been manually generated by security experts during their study on the network status after the release of a new worm. But it can take place after a significant loss of assets. In this research work, we are proposing an automatic method which will generate signature for detection of polymorphic worms. We will be applying Principal Component Analysis (PCA) for determining the important substrings that appears mostly and are pooled amongst the instances of polymorphic worms for using them as signatures. The results generated show the successful detection of polymorphic worms using zero false positives and low false negatives by the PCA.
  • Keywords
    "Grippers","Principal component analysis","Payloads","Security","Conferences","Covariance matrices","Algorithm design and analysis"
  • Publisher
    ieee
  • Conference_Titel
    Computational Intelligence and Computing Research (ICCIC), 2015 IEEE International Conference on
  • Print_ISBN
    978-1-4799-7848-9
  • Type

    conf

  • DOI
    10.1109/ICCIC.2015.7435724
  • Filename
    7435724