Journal of University of Science and Technology of China ›› 2011, Vol. 41 ›› Issue (7): 626-635.DOI: 10.3969/j.issn.0253-2778.2011.07.010

Previous Articles     Next Articles

Intrusion detection approach towards software behavior trustworthiness

WANG Xinzhi   

  1. Electronic Engineering Institute, Hefei 230037, China
  • Received:2011-04-28 Revised:2011-06-23 Online:2011-07-31 Published:2011-07-31

Abstract: According to the problems of current intrusion detection methods, a new static detection approach towards software behavior trustworthiness was presented. Firstly, software behavior trustworthiness was discussed and defined formally, and was then described with instruction sequences. Secondly, a detection approach and its process were presented. Malicious behavior knowledge obtained through data mining on malware was organized as trustworthiness policy and used to detect and judge unknown software. Thirdly, the approach was implemented and verified by some behavior patterns on chosen samples. The experimental results show that the approach can detect malicious behavior in unknown software with a high success rate.

Key words: software trustworthiness, intrusion detection, software behavior, sequential pattern discovery, static detection