Ciberseguridad | 🇬🇧 Cybersecurity

ro:035d2ee6677504e68a7eb8820884a335

Sequence Feature Extraction for Malware Family Analysis via Graph Neural Network

Malicious software (malware) causes much harm to our devices and life. We are eager to understand the malware behavior and the threat it made. Most of the record files of malware are variable length and text-based files with time stamps, such as event log data and dynamic analysis profiles. Using the time stamps, we can sort such data into sequence-based data for the following analysis. However, dealing with the text-based sequences with variable lengths is difficult. In addition, unlike natural language text data, most sequential data in information security have specific properties and structure, such as loop, repeated call, noise, etc. To deeply analyze the API call sequences with their structure, we use graphs to represent the sequences, which can further investigate the information and structure, such as the Markov model. Therefore, we design and implement an Attention Aware Graph Neural Network (AWGCN) to analyze the API call sequences. Through AWGCN, we can obtain the sequence embeddings to analyze the behavior of the malware. Moreover, the classification experiment result shows that AWGCN outperforms other classifiers in the call-like datasets, and the embedding can further improve the classic model’s performance.

Sequence Feature Extraction for Malware Family Analysis via Graph Neural Network Leer más »

R0:b67b54ef535ceeaf4b3bf38c0cdf8c0b-Framework based on parameterized images on ResNet to identify intrusions in smartwatches or other related devices

Framework based on parameterized images on ResNet to identify intrusions in smartwatches or other related devices

The continuous appearance and improvement of mobile devices in the form of smartwatches, smartphones and other similar devices has led to a growing and unfair interest in putting their users under the magnifying glass and control of applications.

Framework based on parameterized images on ResNet to identify intrusions in smartwatches or other related devices Leer más »

R0:a4d69dca3fc7b4bb1e9ce3992edead0d-'Framework' basado en imágenes parametrizadas sobre ResNet para identificar intrusiones en 'smartwatches' u otros dispositivos afines

‘Framework’ basado en imágenes parametrizadas sobre ResNet para identificar intrusiones en ‘smartwatches’ u otros dispositivos afines

La continua apariciĂłn y mejora de dispositivos mĂłviles en forma de ‘smartwatches’, ‘smartphones’ y otros dispositivos similares ha propicio un creciente y desleal interĂ©s en poner bajo la lupa y el control de los aplicativos a sus usuarios. De forma ofuscada por los fabricantes.

‘Framework’ basado en imágenes parametrizadas sobre ResNet para identificar intrusiones en ‘smartwatches’ u otros dispositivos afines Leer más »

Side-Channel Sensing: Exploiting Side-Channels to Extract Information for Medical Diagnostics and Monitoring

Side-Channel Sensing: Exploiting Side-Channels to Extract Information for Medical Diagnostics and Monitoring

Information within systems can be extracted through side-channels; unintended communication channels that leak information. The concept of side-channel sensing is explored, in which sensor data is analysed in non-trivial ways to recover subtle, hidden or unexpected information.

Side-Channel Sensing: Exploiting Side-Channels to Extract Information for Medical Diagnostics and Monitoring Leer más »

Disposable Identities are Elemental(s) in IoT

Disposable Identities are Elemental(s) in IoT

Rob wants to argue that if intent is linked to an incorrect assessment of identity, and thus not central to an ethics of behaviour, then this opens up an actionable set of actors actually at play in the digtial (IoT, 5G, AI) namely: objects (with added connectivity like NFC), machines with built in connectivity, animals & plants (as ecosystems) and humans alike , as they can be treated as entities.

Disposable Identities are Elemental(s) in IoT Leer más »

Trainings for Cybersecurity Specialists

Trainings for Cybersecurity Specialists

«ENISA CSIRT training material was introduced in 2008. In 2012, 2013 and 2014 it was complemented with new exercise scenarios containing essential material for success in the CSIRT community and in the field of information security. In these pages you will find the ENISA CSIRT training material, containing Handbooks for teachers, Toolsets for students and Virtual Images to support hands on training sessions. » The materials continue to be updated in 2020 and are appropriate for use by cybersecurity specialists and decision-makers.

Trainings for Cybersecurity Specialists Leer más »

EUROPEAN CYBER SECURITY CHALLENGE 2020 (Change dates)

EUROPEAN CYBER SECURITY CHALLENGE 2020 (Change dates)

(Change of dates to 2021).Top cyber talents from each participating country will meet in Vienna to network and collaborate and finally compete against each other. Contestants will be challenged in solving security related tasks from domains such as web security, mobile security, crypto puzzles, reverse engineering and forensics and in the process collect points for solving them.

EUROPEAN CYBER SECURITY CHALLENGE 2020 (Change dates) Leer más »