{"id":"https://openalex.org/W2281502218","doi":"https://doi.org/10.1145/2812428.2812432","title":"A graph-based model for malicious code detection exploiting dependencies of system-call groups","display_name":"A graph-based model for malicious code detection exploiting dependencies of system-call groups","publication_year":2015,"publication_date":"2015-06-25","ids":{"openalex":"https://openalex.org/W2281502218","doi":"https://doi.org/10.1145/2812428.2812432","mag":"2281502218"},"language":"en","primary_location":{"id":"doi:10.1145/2812428.2812432","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2812428.2812432","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 16th International Conference on Computer Systems and Technologies","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5080071481","display_name":"Stavros D. Nikolopoulos","orcid":"https://orcid.org/0000-0001-6684-8459"},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Stavros D. Nikolopoulos","raw_affiliation_strings":[""],"affiliations":[{"raw_affiliation_string":"","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5027167384","display_name":"Iosif Polenakis","orcid":"https://orcid.org/0000-0002-6427-5519"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Iosif Polenakis","raw_affiliation_strings":[""],"affiliations":[{"raw_affiliation_string":"","institution_ids":[]}]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5080071481"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.8615,"has_fulltext":false,"cited_by_count":11,"citation_normalized_percentile":{"value":0.75453326,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"228","last_page":"235"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9975000023841858,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10743","display_name":"Software Testing and Debugging Techniques","score":0.9965000152587891,"subfield":{"id":"https://openalex.org/subfields/1712","display_name":"Software"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.7670655846595764},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7125455737113953},{"id":"https://openalex.org/keywords/dependency-graph","display_name":"Dependency graph","score":0.5611570477485657},{"id":"https://openalex.org/keywords/euclidean-distance","display_name":"Euclidean distance","score":0.536041796207428},{"id":"https://openalex.org/keywords/graph","display_name":"Graph","score":0.5326302647590637},{"id":"https://openalex.org/keywords/disjoint-sets","display_name":"Disjoint sets","score":0.511072039604187},{"id":"https://openalex.org/keywords/system-call","display_name":"System call","score":0.4537236988544464},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.4350413382053375},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.2148485779762268},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.18441179394721985},{"id":"https://openalex.org/keywords/discrete-mathematics","display_name":"Discrete mathematics","score":0.13116037845611572}],"concepts":[{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.7670655846595764},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7125455737113953},{"id":"https://openalex.org/C16311509","wikidata":"https://www.wikidata.org/wiki/Q4148050","display_name":"Dependency graph","level":3,"score":0.5611570477485657},{"id":"https://openalex.org/C120174047","wikidata":"https://www.wikidata.org/wiki/Q847073","display_name":"Euclidean distance","level":2,"score":0.536041796207428},{"id":"https://openalex.org/C132525143","wikidata":"https://www.wikidata.org/wiki/Q141488","display_name":"Graph","level":2,"score":0.5326302647590637},{"id":"https://openalex.org/C45340560","wikidata":"https://www.wikidata.org/wiki/Q215382","display_name":"Disjoint sets","level":2,"score":0.511072039604187},{"id":"https://openalex.org/C2778579508","wikidata":"https://www.wikidata.org/wiki/Q722192","display_name":"System call","level":2,"score":0.4537236988544464},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.4350413382053375},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.2148485779762268},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.18441179394721985},{"id":"https://openalex.org/C118615104","wikidata":"https://www.wikidata.org/wiki/Q121416","display_name":"Discrete mathematics","level":1,"score":0.13116037845611572},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/2812428.2812432","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2812428.2812432","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 16th International Conference on Computer Systems and Technologies","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.5199999809265137}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":12,"referenced_works":["https://openalex.org/W172558989","https://openalex.org/W1487484051","https://openalex.org/W1956767865","https://openalex.org/W2024170198","https://openalex.org/W2042454716","https://openalex.org/W2110143557","https://openalex.org/W2126401948","https://openalex.org/W2131523719","https://openalex.org/W2154871153","https://openalex.org/W2166924764","https://openalex.org/W2181829238","https://openalex.org/W2247654784"],"related_works":["https://openalex.org/W2439951656","https://openalex.org/W1998188341","https://openalex.org/W1573526548","https://openalex.org/W4360982091","https://openalex.org/W3176864451","https://openalex.org/W2053632570","https://openalex.org/W2187910102","https://openalex.org/W4389341938","https://openalex.org/W2128507946","https://openalex.org/W4254552916"],"abstract_inverted_index":{"In":[0],"this":[1],"paper,":[2],"we":[3,14,59,90,125],"propose":[4,91],"a":[5,32,48,51,74],"graph-based":[6],"algorithmic":[7],"technique":[8,72],"for":[9,21],"malware":[10,120],"detection.":[11],"More":[12],"precisely,":[13],"utilize":[15],"the":[16,55,92,99,104,127],"system-call":[17],"dependency":[18],"graphs":[19],"(or,":[20],"short,":[22],"ScD":[23,80],"graphs),":[24],"obtained":[25],"by":[26,68],"capturing":[27],"taint":[28],"analysis":[29],"traces":[30],"and":[31,106,121,133],"set":[33],"of":[34,57,86,108,119,129],"various":[35],"similarity":[36],"metrics":[37],"in":[38],"order":[39],"to":[40,61,141],"detect":[41],"whether":[42],"an":[43],"unknown":[44],"test":[45],"sample":[46],"is":[47,96],"malicious":[49],"or":[50],"benign":[52,122],"one.":[53],"For":[54],"sake":[56],"generalization,":[58],"decide":[60],"empower":[62],"our":[63,70,130],"model":[64,132],"against":[65],"strong":[66],"mutations":[67],"applying":[69],"detection":[71,131,143],"on":[73,98,103],"weighted":[75],"directed":[76],"graph":[77,81],"resulting":[78],"from":[79],"after":[82],"grouping":[83],"disjoint":[84],"subsets":[85],"its":[87,136],"vertices.":[88],"Additionally,":[89],"\u0394-Similarity":[93],"metric,":[94],"which":[95],"based":[97],"Euclidean":[100],"distance":[101],"operating":[102],"in-degree":[105],"out-degree":[107],"ScD's":[109],"nodes":[110],"along":[111],"with":[112],"their":[113],"corresponding":[114],"weights,":[115],"distinguishing":[116],"thus":[117],"graph-representations":[118],"software.":[123],"Finally,":[124],"evaluate":[126],"potentials":[128],"show":[134],"that":[135],"performance":[137],"makes":[138],"it":[139],"competing":[140],"other":[142],"models.":[144]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2022,"cited_by_count":2},{"year":2021,"cited_by_count":3},{"year":2020,"cited_by_count":1},{"year":2019,"cited_by_count":1},{"year":2018,"cited_by_count":1},{"year":2016,"cited_by_count":1},{"year":2015,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
