Evaluating Grayware Characteristics and Risks

Joint Authors

Zhang, Yuan
Chen, Zhongqiang
Chen, Zhongrong
Liang, Zhanyan

Source

Journal of Computer Networks and Communications

Issue

Vol. 2011, Issue 2011 (31 Dec. 2011), pp.1-28, 28 p.

Publisher

Hindawi Publishing Corporation

Publication Date

2011-10-04

Country of Publication

Egypt

No. of Pages

28

Main Subjects

Information Technology and Computer Science

Abstract EN

Grayware encyclopedias collect known species to provide information for incident analysis, however, the lack of categorization and generalization capability renders them ineffective in the development of defense strategies against clustered strains.

A grayware categorization framework is therefore proposed here to not only classify grayware according to diverse taxonomic features but also facilitate evaluations on grayware risk to cyberspace.

Armed with Support Vector Machines, the framework builds learning models based on training data extracted automatically from grayware encyclopedias and visualizes categorization results with Self-Organizing Maps.

The features used in learning models are selected with information gain and the high dimensionality of feature space is reduced by word stemming and stopword removal process.

The grayware categorizations on diversified features reveal that grayware typically attempts to improve its penetration rate by resorting to multiple installation mechanisms and reduced code footprints.

The framework also shows that grayware evades detection by attacking victims' security applications and resists being removed by enhancing its clotting capability with infected hosts.

Our analysis further points out that species in categories Spyware and Adware continue to dominate the grayware landscape and impose extremely critical threats to the Internet ecosystem.

American Psychological Association (APA)

Chen, Zhongqiang& Liang, Zhanyan& Zhang, Yuan& Chen, Zhongrong. 2011. Evaluating Grayware Characteristics and Risks. Journal of Computer Networks and Communications،Vol. 2011, no. 2011, pp.1-28.
https://search.emarefa.net/detail/BIM-481533

Modern Language Association (MLA)

Chen, Zhongqiang…[et al.]. Evaluating Grayware Characteristics and Risks. Journal of Computer Networks and Communications No. 2011 (2011), pp.1-28.
https://search.emarefa.net/detail/BIM-481533

American Medical Association (AMA)

Chen, Zhongqiang& Liang, Zhanyan& Zhang, Yuan& Chen, Zhongrong. Evaluating Grayware Characteristics and Risks. Journal of Computer Networks and Communications. 2011. Vol. 2011, no. 2011, pp.1-28.
https://search.emarefa.net/detail/BIM-481533

Data Type

Journal Articles

Language

English

Notes

Includes bibliographical references

Record ID

BIM-481533