木更津工業高等専門学校紀要
Online ISSN : 2188-921X
Print ISSN : 2188-9201
ISSN-L : 0285-7901
原著論文
IoT社会に向けた圧縮パケットに対するマルウェア検知手法の提案と評価
若葉 陽一
著者情報
研究報告書・技術報告書 フリー

2020 年 53 巻 p. 41-45

詳細
抄録
This paper proposes a new malware detection method for a LZ compressed packet in NIDS. In this method, NIDS first inspects a compressed packet roughly, and selects a packet that is possibility of malware, that is like screening test. Subsequently, NIDS decompresses only the selected packet and inspects it exactly. Evaluation results show that this method is not practical for original LZ compression. Hence, this paper also denotes LZ based compression method which is suitable the proposed method. Re-evaluation results show that the proposed method archives 240% speed up proportion to the existing method by sacrificing compression size. It is expected that the proposed method contributes to compression as a new option.
著者関連情報
© 2020 独立行政法人 国立高等専門学校機構 木更津工業高等専門学校
前の記事 次の記事
feedback
Top