{"title":"利用数据隐私混淆技术隐藏渗透测试有效载荷的新方法","authors":"Abdul Basit Ajmal, A. Anjum, Adnan Anjum, M. Khan","doi":"10.1109/HONET53078.2021.9615485","DOIUrl":null,"url":null,"abstract":"Offensive security activities such as penetration testing is employed to simulate attack scenarios in order to test vulnerabilities. However, in past research defense evasion was not considered in the whole approach which decreases the realism factor of testing. In this paper we propose a novel approach for concealing malwares from static analysis using data privacy techniques such as suppression, generalization, and compression. We have provided an algorithm and implementation on GitHub. We have concluded that this approach is effective in malware concealment against static analysis.","PeriodicalId":177268,"journal":{"name":"2021 IEEE 18th International Conference on Smart Communities: Improving Quality of Life Using ICT, IoT and AI (HONET)","volume":"122 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-10-11","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":"{\"title\":\"Novel Approach for Concealing Penetration Testing Payloads Using Data Privacy Obfuscation Techniques\",\"authors\":\"Abdul Basit Ajmal, A. Anjum, Adnan Anjum, M. Khan\",\"doi\":\"10.1109/HONET53078.2021.9615485\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Offensive security activities such as penetration testing is employed to simulate attack scenarios in order to test vulnerabilities. However, in past research defense evasion was not considered in the whole approach which decreases the realism factor of testing. In this paper we propose a novel approach for concealing malwares from static analysis using data privacy techniques such as suppression, generalization, and compression. We have provided an algorithm and implementation on GitHub. We have concluded that this approach is effective in malware concealment against static analysis.\",\"PeriodicalId\":177268,\"journal\":{\"name\":\"2021 IEEE 18th International Conference on Smart Communities: Improving Quality of Life Using ICT, IoT and AI (HONET)\",\"volume\":\"122 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2021-10-11\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"2\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2021 IEEE 18th International Conference on Smart Communities: Improving Quality of Life Using ICT, IoT and AI (HONET)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/HONET53078.2021.9615485\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2021 IEEE 18th International Conference on Smart Communities: Improving Quality of Life Using ICT, IoT and AI (HONET)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/HONET53078.2021.9615485","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Novel Approach for Concealing Penetration Testing Payloads Using Data Privacy Obfuscation Techniques
Offensive security activities such as penetration testing is employed to simulate attack scenarios in order to test vulnerabilities. However, in past research defense evasion was not considered in the whole approach which decreases the realism factor of testing. In this paper we propose a novel approach for concealing malwares from static analysis using data privacy techniques such as suppression, generalization, and compression. We have provided an algorithm and implementation on GitHub. We have concluded that this approach is effective in malware concealment against static analysis.