Please use this identifier to cite or link to this item: https://repository.cihe.edu.hk/jspui/handle/cihe/1322
DC FieldValueLanguage
dc.contributor.authorChan, Anthony Hing-Hungen_US
dc.contributor.otherMohammed, M. M. Z. E.-
dc.contributor.otherVentura, N.-
dc.contributor.otherPathan, A.-S. K.-
dc.date.accessioned2021-08-17T10:03:31Z-
dc.date.available2021-08-17T10:03:31Z-
dc.date.issued2013-
dc.identifier.urihttps://repository.cihe.edu.hk/jspui/handle/cihe/1322-
dc.description.abstractPolymorphic worms are considered as the most dangerous threats to the Internet security, and the danger lies in changing their payloads in every infection attempt to avoid the security systems. In this paper, we propose an accurate signature generation system for zero-day polymorphic worms. We have designed a novel Double-honeynet system, which is able to detect zero-day polymorphic worms that have not been seen before. To generate signatures for polymorphic worms we have two steps. The first step is the polymorphic worms sample collection which is done by the Double-honeynet system. The second step is the signature generation for the collected samples which is done by k-means clustering algorithm and a Multilayer Perceptron Model. The system collects different types of polymorphic worms, we used the k-means clustering algorithm to separate each type into a cluster. The Multilayer Perceptron Model is used to generate signatures for each cluster. The main goal for this system is to reduce the false positives and false negatives.en_US
dc.language.isoenen_US
dc.publisherIEEEen_US
dc.titleAn automated signature generation method for zero-day polymorphic worms based on Multilayer Perceptron Modelen_US
dc.typeconference proceedingsen_US
dc.relation.publicationProceedings of the 2013 International Conference on Advanced Computer Science Applications and Technologies (ACSAT)en_US
dc.identifier.doi10.1109/ACSAT.2013.94-
dc.contributor.affiliationSchool of Computing and Information Sciencesen_US
dc.relation.isbn9781479927586en_US
dc.description.startpage450en_US
dc.description.endpage455en_US
dc.cihe.affiliatedNo-
item.languageiso639-1en-
item.fulltextNo Fulltext-
item.openairetypeconference proceedings-
item.grantfulltextnone-
item.openairecristypehttp://purl.org/coar/resource_type/c_5794-
item.cerifentitytypePublications-
crisitem.author.deptYam Pak Charitable Foundation School of Computing and Information Sciences-
crisitem.author.orcid0000-0001-7479-0787-
Appears in Collections:CIS Publication
SFX Query Show simple item record

Google ScholarTM

Check

Altmetric

Altmetric


Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.