{"id":"https://openalex.org/W3168458510","doi":"https://doi.org/10.1186/s42400-021-00083-9","title":"Hypervisor-assisted dynamic malware analysis","display_name":"Hypervisor-assisted dynamic malware analysis","publication_year":2021,"publication_date":"2021-06-02","ids":{"openalex":"https://openalex.org/W3168458510","doi":"https://doi.org/10.1186/s42400-021-00083-9","mag":"3168458510"},"language":"en","primary_location":{"id":"doi:10.1186/s42400-021-00083-9","is_oa":true,"landing_page_url":"https://doi.org/10.1186/s42400-021-00083-9","pdf_url":"https://cybersecurity.springeropen.com/track/pdf/10.1186/s42400-021-00083-9","source":{"id":"https://openalex.org/S3035238565","display_name":"Cybersecurity","issn_l":"2523-3246","issn":["2523-3246"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319965","host_organization_name":"Springer Nature","host_organization_lineage":["https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Cybersecurity","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"diamond","oa_url":"https://cybersecurity.springeropen.com/track/pdf/10.1186/s42400-021-00083-9","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5060508275","display_name":"Roee Leon","orcid":"https://orcid.org/0000-0002-0905-3913"},"institutions":[{"id":"https://openalex.org/I166937679","display_name":"Shenkar College of Engineering and Design","ror":"https://ror.org/003s3dn82","country_code":"IL","type":"education","lineage":["https://openalex.org/I166937679"]}],"countries":["IL"],"is_corresponding":false,"raw_author_name":"Roee S. Leon","raw_affiliation_strings":["Shenkar College, Ramat Gan, Israel"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Shenkar College, Ramat Gan, Israel","institution_ids":["https://openalex.org/I166937679"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5040262435","display_name":"Michael Kiperberg","orcid":"https://orcid.org/0000-0001-8906-5940"},"institutions":[{"id":"https://openalex.org/I3129975082","display_name":"Sami Shamoon College of Engineering","ror":"https://ror.org/011aa4g29","country_code":"IL","type":"education","lineage":["https://openalex.org/I3129975082"]}],"countries":["IL"],"is_corresponding":false,"raw_author_name":"Michael Kiperberg","raw_affiliation_strings":["Department of Software Engineering, Shamoon College of Engineering, Beer-Sheva, Israel"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Software Engineering, Shamoon College of Engineering, Beer-Sheva, Israel","institution_ids":["https://openalex.org/I3129975082"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5044182022","display_name":"Anat Anatey Leon Zabag","orcid":null},"institutions":[{"id":"https://openalex.org/I3129975082","display_name":"Sami Shamoon College of Engineering","ror":"https://ror.org/011aa4g29","country_code":"IL","type":"education","lineage":["https://openalex.org/I3129975082"]}],"countries":["IL"],"is_corresponding":false,"raw_author_name":"Anat Anatey Leon Zabag","raw_affiliation_strings":["Department of Software Engineering, Shamoon College of Engineering, Beer-Sheva, Israel"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Software Engineering, Shamoon College of Engineering, Beer-Sheva, Israel","institution_ids":["https://openalex.org/I3129975082"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5076875897","display_name":"Nezer Zaidenberg","orcid":"https://orcid.org/0000-0003-3496-7925"},"institutions":[{"id":"https://openalex.org/I25623903","display_name":"College of Management Academic Studies","ror":"https://ror.org/03wmj4s33","country_code":"IL","type":"education","lineage":["https://openalex.org/I25623903"]},{"id":"https://openalex.org/I94722563","display_name":"University of Jyv\u00e4skyl\u00e4","ror":"https://ror.org/05n3dz165","country_code":"FI","type":"education","lineage":["https://openalex.org/I94722563"]}],"countries":["FI","IL"],"is_corresponding":true,"raw_author_name":"Nezer Jacob Zaidenberg","raw_affiliation_strings":["College of Management Academic Studies, Rishon LeTsiyon, Israel","University of Jyv\u00e4skyl\u00e4, Jyv\u00e4skyl\u00e4, Finland"],"raw_orcid":"https://orcid.org/0000-0003-3496-7925","affiliations":[{"raw_affiliation_string":"College of Management Academic Studies, Rishon LeTsiyon, Israel","institution_ids":["https://openalex.org/I25623903"]},{"raw_affiliation_string":"University of Jyv\u00e4skyl\u00e4, Jyv\u00e4skyl\u00e4, Finland","institution_ids":["https://openalex.org/I94722563"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5076875897"],"corresponding_institution_ids":["https://openalex.org/I25623903","https://openalex.org/I94722563"],"apc_list":null,"apc_paid":null,"fwci":2.0067,"has_fulltext":true,"cited_by_count":18,"citation_normalized_percentile":{"value":0.8722706,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":96,"max":99},"biblio":{"volume":"4","issue":"1","first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.998199999332428,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.9368749260902405},{"id":"https://openalex.org/keywords/hypervisor","display_name":"Hypervisor","score":0.8660984039306641},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8133939504623413},{"id":"https://openalex.org/keywords/malware-analysis","display_name":"Malware analysis","score":0.7251879572868347},{"id":"https://openalex.org/keywords/overhead","display_name":"Overhead (engineering)","score":0.6756446361541748},{"id":"https://openalex.org/keywords/static-analysis","display_name":"Static analysis","score":0.6667771339416504},{"id":"https://openalex.org/keywords/context","display_name":"Context (archaeology)","score":0.6073461771011353},{"id":"https://openalex.org/keywords/cryptovirology","display_name":"Cryptovirology","score":0.5473527908325195},{"id":"https://openalex.org/keywords/component","display_name":"Component (thermodynamics)","score":0.5328840017318726},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4414486587047577},{"id":"https://openalex.org/keywords/task","display_name":"Task (project management)","score":0.4397367835044861},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.4331287145614624},{"id":"https://openalex.org/keywords/privilege","display_name":"Privilege (computing)","score":0.4323023557662964},{"id":"https://openalex.org/keywords/virtualization","display_name":"Virtualization","score":0.23927661776542664},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.10033905506134033},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.09047260880470276},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.08733808994293213}],"concepts":[{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.9368749260902405},{"id":"https://openalex.org/C112904061","wikidata":"https://www.wikidata.org/wiki/Q1077480","display_name":"Hypervisor","level":4,"score":0.8660984039306641},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8133939504623413},{"id":"https://openalex.org/C2779395397","wikidata":"https://www.wikidata.org/wiki/Q15731404","display_name":"Malware analysis","level":3,"score":0.7251879572868347},{"id":"https://openalex.org/C2779960059","wikidata":"https://www.wikidata.org/wiki/Q7113681","display_name":"Overhead (engineering)","level":2,"score":0.6756446361541748},{"id":"https://openalex.org/C97686452","wikidata":"https://www.wikidata.org/wiki/Q7604153","display_name":"Static analysis","level":2,"score":0.6667771339416504},{"id":"https://openalex.org/C2779343474","wikidata":"https://www.wikidata.org/wiki/Q3109175","display_name":"Context (archaeology)","level":2,"score":0.6073461771011353},{"id":"https://openalex.org/C84525096","wikidata":"https://www.wikidata.org/wiki/Q3506050","display_name":"Cryptovirology","level":3,"score":0.5473527908325195},{"id":"https://openalex.org/C168167062","wikidata":"https://www.wikidata.org/wiki/Q1117970","display_name":"Component (thermodynamics)","level":2,"score":0.5328840017318726},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4414486587047577},{"id":"https://openalex.org/C2780451532","wikidata":"https://www.wikidata.org/wiki/Q759676","display_name":"Task (project management)","level":2,"score":0.4397367835044861},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.4331287145614624},{"id":"https://openalex.org/C2780138299","wikidata":"https://www.wikidata.org/wiki/Q3404265","display_name":"Privilege (computing)","level":2,"score":0.4323023557662964},{"id":"https://openalex.org/C513985346","wikidata":"https://www.wikidata.org/wiki/Q270471","display_name":"Virtualization","level":3,"score":0.23927661776542664},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.10033905506134033},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.09047260880470276},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.08733808994293213},{"id":"https://openalex.org/C201995342","wikidata":"https://www.wikidata.org/wiki/Q682496","display_name":"Systems engineering","level":1,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C151730666","wikidata":"https://www.wikidata.org/wiki/Q7205","display_name":"Paleontology","level":1,"score":0.0},{"id":"https://openalex.org/C97355855","wikidata":"https://www.wikidata.org/wiki/Q11473","display_name":"Thermodynamics","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1186/s42400-021-00083-9","is_oa":true,"landing_page_url":"https://doi.org/10.1186/s42400-021-00083-9","pdf_url":"https://cybersecurity.springeropen.com/track/pdf/10.1186/s42400-021-00083-9","source":{"id":"https://openalex.org/S3035238565","display_name":"Cybersecurity","issn_l":"2523-3246","issn":["2523-3246"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319965","host_organization_name":"Springer Nature","host_organization_lineage":["https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Cybersecurity","raw_type":"journal-article"},{"id":"pmh:oai:doaj.org/article:a53bea07133b42f5bf51ca3a8a770af1","is_oa":true,"landing_page_url":"https://doaj.org/article/a53bea07133b42f5bf51ca3a8a770af1","pdf_url":null,"source":{"id":"https://openalex.org/S4306401280","display_name":"DOAJ (DOAJ: Directory of Open Access Journals)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Cybersecurity, Vol 4, Iss 1, Pp 1-14 (2021)","raw_type":"article"},{"id":"pmh:oai:jyx.jyu.fi:123456789/76199","is_oa":true,"landing_page_url":"http://urn.fi/URN:NBN:fi:jyu-202106043426","pdf_url":null,"source":{"id":"https://openalex.org/S4306400563","display_name":"Jyv\u00e4skyl\u00e4 University Digital Archive (University of Jyv\u00e4skyl\u00e4)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I94722563","host_organization_name":"University of Jyv\u00e4skyl\u00e4","host_organization_lineage":["https://openalex.org/I94722563"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"A1"}],"best_oa_location":{"id":"doi:10.1186/s42400-021-00083-9","is_oa":true,"landing_page_url":"https://doi.org/10.1186/s42400-021-00083-9","pdf_url":"https://cybersecurity.springeropen.com/track/pdf/10.1186/s42400-021-00083-9","source":{"id":"https://openalex.org/S3035238565","display_name":"Cybersecurity","issn_l":"2523-3246","issn":["2523-3246"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319965","host_organization_name":"Springer Nature","host_organization_lineage":["https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Cybersecurity","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W3168458510.pdf","grobid_xml":"https://content.openalex.org/works/W3168458510.grobid-xml"},"referenced_works_count":54,"referenced_works":["https://openalex.org/W23711711","https://openalex.org/W78162143","https://openalex.org/W191656338","https://openalex.org/W1503224444","https://openalex.org/W1514780984","https://openalex.org/W1662583158","https://openalex.org/W1674877186","https://openalex.org/W1827822366","https://openalex.org/W1968632081","https://openalex.org/W1981221397","https://openalex.org/W2015790908","https://openalex.org/W2024170198","https://openalex.org/W2026372785","https://openalex.org/W2057787526","https://openalex.org/W2058342152","https://openalex.org/W2066220442","https://openalex.org/W2070041400","https://openalex.org/W2072633121","https://openalex.org/W2087740020","https://openalex.org/W2098431065","https://openalex.org/W2108104525","https://openalex.org/W2111038628","https://openalex.org/W2119251836","https://openalex.org/W2122366494","https://openalex.org/W2127723417","https://openalex.org/W2131523719","https://openalex.org/W2131726714","https://openalex.org/W2132714796","https://openalex.org/W2132874238","https://openalex.org/W2140807364","https://openalex.org/W2145688371","https://openalex.org/W2150795982","https://openalex.org/W2154871153","https://openalex.org/W2158167094","https://openalex.org/W2158874007","https://openalex.org/W2171035369","https://openalex.org/W2176830056","https://openalex.org/W2461373307","https://openalex.org/W2517430515","https://openalex.org/W2579276500","https://openalex.org/W2754096695","https://openalex.org/W2765181145","https://openalex.org/W2770502925","https://openalex.org/W2792599578","https://openalex.org/W2900633536","https://openalex.org/W2911311548","https://openalex.org/W2943889232","https://openalex.org/W2972552958","https://openalex.org/W2988961468","https://openalex.org/W3008201587","https://openalex.org/W3037286208","https://openalex.org/W3135932763","https://openalex.org/W3178722239","https://openalex.org/W6602163396"],"related_works":["https://openalex.org/W2469507153","https://openalex.org/W2008790809","https://openalex.org/W4285507391","https://openalex.org/W2160963033","https://openalex.org/W3022706011","https://openalex.org/W3107556205","https://openalex.org/W2610659201","https://openalex.org/W4234891089","https://openalex.org/W2067547021","https://openalex.org/W2805262980"],"abstract_inverted_index":{"Abstract":[0],"Malware":[1],"analysis":[2,33,37,82,92],"is":[3,94,123],"a":[4,48,71,77,97],"task":[5],"of":[6,25,86,113],"utmost":[7],"importance":[8],"in":[9],"cyber-security.":[10],"Two":[11],"approaches":[12],"exist":[13],"for":[14],"malware":[15,21,45,65,81],"analysis:":[16],"static":[17,32],"and":[18,31,108],"dynamic.":[19],"Modern":[20],"uses":[22],"an":[23],"abundance":[24],"techniques":[26],"to":[27,42,104],"evade":[28],"both":[29],"dynamic":[30,36],"tools.":[34],"Current":[35],"solutions":[38],"either":[39],"make":[40],"modifications":[41],"the":[43,54,67,84,87,91,105,114,119],"running":[44,106],"or":[46],"use":[47],"higher":[49],"privilege":[50],"component":[51,93],"that":[52,79,118],"does":[53],"actual":[55],"analysis.":[56],"The":[57,111],"former":[58],"can":[59],"be":[60],"easily":[61],"detected":[62],"by":[63,96],"sophisticated":[64],"while":[66],"latter":[68],"often":[69],"induces":[70],"significant":[72],"performance":[73,121],"overhead.":[74],"We":[75],"propose":[76],"method":[78],"performs":[80],"within":[83],"context":[85],"OS":[88,107],"itself.":[89],"Furthermore,":[90],"camouflaged":[95],"hypervisor,":[98],"which":[99],"makes":[100],"it":[101],"completely":[102],"transparent":[103],"its":[109],"applications.":[110],"evaluation":[112],"system\u2019s":[115],"efficiency":[116],"suggests":[117],"induced":[120],"overhead":[122],"negligible.":[124]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":4},{"year":2023,"cited_by_count":4},{"year":2022,"cited_by_count":5}],"updated_date":"2026-05-06T08:25:59.206177","created_date":"2025-10-10T00:00:00"}
