訊息公告

【SEMINAR】4/27(三), Topic: Malicious Behavior Discovery with Open Source Intelligence and obfuscation resilience

Seminars will be changed to online tomorrow.

Do not go to the classroom!

The link below is for online seminars, please enter the google meeting according to the mantissa.

4/27 Online Seminars (Mantissa odd number): https://meet.google.com/zui-nopr-rbm

4/27 Online Seminars (Mantissa even number): https://meet.google.com/fyq-bavg-soq

 

Time: 4/27(Wed) 3.30-5:00 PM
Location: According to the above information
 
1. Topic:
Malicious Behavior Discovery with Open Source Intelligence and obfuscation resilience
 
2. Speaker:
Postdoctoral Scholars, Research Center for Information Technology Innovation, Academia Sinica

3. Abstract:
In this talk, I will share my experience in malware behavior analysis. First, I will address research experience and issues in malware analysis. Then, I will present a MITRE ATT&CK-based Malicious Behavior Analysis system (MAMBA) for Windows malware. It incorporates MITRE ATT&CK knowledge and considers attention mechanisms on manipulated resources and malicious activities in the neural network model. Next, I will focus on enhancing the robustness of MAMBA against behavior obfuscation to discover malicious behavior, and propose obfuscation resilient MAMBA+. MAMBA and MAMBA+ achieve the best performance of malicious behavior discovery among all the compared learning-based methods and rule-based approaches on all datasets. Finally, I will introduce the ongoing research topics.


  1. Biography:

Yi-Ting Huang is currently a postdoctoral fellow with the Institute of Information Science, Academia Sinica. She received her Ph.D. degree in information management from National Taiwan University, Taipei, Taiwan, in 2015. Her research interests include malware behavior analysis, MITRE ATT&CK, deep learning, and natural language processing techniques.