A practical business security framework to combat malware threat

A practical business security framework to combat malware threat
复制标题

对抗恶意软件威胁的实用业务安全框架

DOI:
--
复制
发表时间:
2012
期刊:
World Congress on Internet Security
影响因子:
--
通讯作者:
Chandra Babu
Chandra Babu
中科院分区:
--
文献类型:
--
作者:
P. R. Lakshmi Eswari;N. Sarat;Chandra Babu

文献摘要

被引文献

相似文献

恶意软件威胁随着复杂性的增加而不断增长。尽管在外围、网络、主机、应用程序和数据级别提供了多层防御,但解决与恶意软件相关的问题仍然是一个挑战。它们的数量和复杂性都在增加,并对从拒绝服务到侵入网上银行账户的各种攻击负责。近年来,混合攻击非常流行,危害严重,很难使用基于签名的反恶意软件解决方案来解决。基于签名的反恶意软件解决方案无法完全检测和阻止恶意软件行为。虽然基于启发式的反恶意软件解决方案能够提高检测率,但其误检率很高。应用程序白名单是有效的,但对环境造成了僵化。通过分析正反两种安全模型,结合信息技术(IT)系统的性质和业务目标,提出了一种实用的对抗恶意软件威胁的安全框架。
Malware threats are continuously growing with sophistication. Though multiple layers of defense are provided at perimeter, network, host, application and data levels, it is still becoming a challenge to address malware related problems. They have grown in number as well as complexity and are responsible for attacks ranging from denial-of-service to compromising online banking accounts. In recent times, blended attacks are popular with high severity of damage and are difficult to address using signature based anti-malware solutions. Signature based anti-malware solutions are not able to completely detect and block malware behavior. Though heuristic based anti-malware solutions are able to increase the detection rate, their false positive rate is high. Application whitelisting is effective but creates rigidity on environment. Through this paper we analyzed positive as well as negative security models and proposed a practical security framework for combating malware threat, considering the nature of Information Technology (IT) systems and their business objective.