Task-based behavior detection of illegal codes

Publisher:
Elsevier
Publication Type:
Journal Article
Citation:
Mathematical and Computer Modelling, 2012, 55 (1-2), pp. 80 - 86
Issue Date:
2012-01
Full metadata record
Files in This Item:
Filename Description Size
Thumbnail2012000753OK.pdf325.66 kB
Adobe PDF
Detecting unseen illegal codes is always a challenging task. As the main action to deal with this problem, the behavior detection is unsatisfactory in both effectiveness and efficiency. This paper proposes task-based behavior detection (TBBD) which detects new illegal codes based on the userâs task instead of only on the software behavior. First, the paper proposes three prerequisites of TBBD and four judgment rules, i.e., resource abnormal rule, relation abnormal rule, space abnormal rule and time abnormal rule. Then, by analyzing the effectiveness and comparison of the four judgment rules, we present an explicit judgment process of TBBD. Finally, the paper carries on the experiments. The test result verifies the validity and feasibility of TBBD.
Please use this identifier to cite or link to this item: