Live system call trace reconstruction on Linux

Forensic Science International: Digital Investigation(2022)

引用 0|浏览11
暂无评分
摘要
Live system call traces provide essential information in analyzing modern malware. Prior work demonstrated how system call traces can be used to differentiate benign from malicious applications. For example, ransomware invokes file system API to remove users’ access to their sensitive data, and asks for a ransom to restore the access privileges.
更多
查看译文
关键词
Memory forensics,Virtual machine introspection,System call tracing,Malware analysis,Ransomware
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要