2023

Ceschin, Fabrício; Botacin, Marcus; Bifet, Albert; Pfahringer, Bernhard; Oliveira, Luiz S; Gomes, Heitor Murilo; Grégio, André

Machine Learning (In) Security: A Stream of Problems Journal Article

Digital Threats, 2023, ISSN: 2692-1626, (Just Accepted).

Abstract | Links | BibTeX | Tags: cybersecurity, Data streams, Machine learning

Giovanini, Luiz; Gilda, Shlok; Silva, Mirela; Ceschin, Fabrício; Shrestha, Prakash; Brant, Christopher; Fernandes, Juliana; Silva, Catia S; Grégio, André; Oliveira, Daniela

People Still Care About Facts: Twitter Users Engage More with Factual Discourse than Misinformation Inproceedings

Security and Privacy in Social Networks and Big Data, pp. 3–22, Springer Nature Singapore, Singapore, 2023, ISBN: 978-981-99-5177-2.

Abstract | Links | BibTeX | Tags:

Pimenta, Thalita Scharr Rodrigues; Ceschin, Fabricio; Gregio, Andre

ANDROIDGYNY: Reviewing Clustering Techniques for Android Malware Family Classification Journal Article

Digital Threats, 2023, ISSN: 2692-1626, (Just Accepted).

Abstract | Links | BibTeX | Tags: Classification, Mobile Malware, Phylogeny

2022

Ceschin, Fabrício; Botacin, Marcus; Gomes, Heitor Murilo; Pinagé, Felipe; Oliveira, Luiz S; Grégio, André

Fast & Furious: On the modelling of malware detection as an evolving data stream Journal Article

Expert Systems with Applications, pp. 118590, 2022, ISSN: 0957-4174.

Abstract | Links | BibTeX | Tags: Android, Concept drift, Data streams, Machine learning, malware detection

Giovanini, Luiz; Ceschin, Fabrício; Silva, Mirela; Chen, Aokun; Kulkarni, Ramchandra; Banda, Sanjay; Lysaght, Madison; Qiao, Heng; Sapountzis, Nikolaos; Sun, Ruimin; Matthews, Brandon; Wu, Dapeng Oliver; Grégio, André; Oliveira, Daniela

Online Binary Models are Promising for Distinguishing Temporally Consistent Computer Usage Profiles Journal Article

IEEE Transactions on Biometrics, Behavior, and Identity Science, pp. 1-1, 2022.

Links | BibTeX | Tags:

Botacin, Marcus; Moreira, Francis B; Navaux, Philippe O A; Grégio, André; Alves, Marco A Z

Terminator: A Secure Coprocessor to Accelerate Real-Time AntiViruses Using Inspection Breakpoints Journal Article

ACM Trans. Priv. Secur., 25 (2), 2022, ISSN: 2471-2566.

Abstract | Links | BibTeX | Tags: antivirus, coprocessor, malware

Botacin, Marcus; Alves, Marco Zanata; Oliveira, Daniela; Grégio, André

HEAVEN: A Hardware-Enhanced AntiVirus ENgine to accelerate real-time, signature-based malware detection Journal Article

Expert Systems with Applications, pp. 117083, 2022, ISSN: 0957-4174.

Abstract | Links | BibTeX | Tags: antivirus, Branch prediction, malware, Performance, Signatures

Botacin, Marcus; Grégio, André

Why We Need a Theory of Maliciousness: Hardware Performance Counters in Security Inproceedings

Susilo, Willy; Chen, Xiaofeng; Guo, Fuchun; Zhang, Yudi; Intan, Rolly (Ed.): Information Security, pp. 381–389, Springer International Publishing, Cham, 2022, ISBN: 978-3-031-22390-7.

Abstract | Links | BibTeX | Tags:

Botacin, Marcus; Grégio, André

Dissecting Applications Uninstallers and Removers: Are They Effective? Inproceedings

Susilo, Willy; Chen, Xiaofeng; Guo, Fuchun; Zhang, Yudi; Intan, Rolly (Ed.): Information Security, pp. 339–359, Springer International Publishing, Cham, 2022, ISBN: 978-3-031-22390-7.

Abstract | Links | BibTeX | Tags:

2021

Botacin, Marcus; Aghakhani, Hojjat; Ortolani, Stefano; Kruegel, Christopher; Vigna, Giovanni; Oliveira, Daniela; Geus, Paulo Lício De; Grégio, André

One Size Does Not Fit All: A Longitudinal Analysis of Brazilian Financial Malware Journal Article

ACM Trans. Priv. Secur., 24 (2), 2021, ISSN: 2471-2566.

Abstract | Links | BibTeX | Tags: banking, malware, reverse engineer

Botacin, Marcus; Ceschin, Fabricio; Sun, Ruimin; Oliveira, Daniela; Grégio, André

Challenges and Pitfalls in Malware Research Journal Article

Computers & Security, pp. 102287, 2021, ISSN: 0167-4048.

Abstract | Links | BibTeX | Tags:

Botacin, Marcus; Moia, Vitor Hugo Galhardo; Ceschin, Fabricio; Henriques, Marco Amaral A; Grégio, André

Understanding uses and misuses of similarity hashing functions for malware detection and family clustering in actual scenarios Journal Article

Forensic Science International: Digital Investigation, 38 , pp. 301220, 2021, ISSN: 2666-2817.

Abstract | Links | BibTeX | Tags:

Botacin, Marcus; Domingues, Felipe Duarte; Ceschin, Fabrício; Machnicki, Raphael; Alves, Marco Antonio Zanata; de Geus, Paulo Lício; Grégio, André

AntiViruses under the Microscope: A Hands-On Perspective Journal Article

Computers & Security, pp. 102500, 2021, ISSN: 0167-4048.

Abstract | Links | BibTeX | Tags:

2020

Ceschin, Fabricio; Botacin, Marcus; Lüders, Gabriel; Gomes, Heitor Murilo; Oliveira, Luiz; Gregio, Andre

No Need to Teach New Tricks to Old Malware: Winning an Evasion Challenge with XOR-Based Adversarial Samples Inproceedings

Reversing and Offensive-Oriented Trends Symposium, pp. 13–22, Association for Computing Machinery, Vienna, Austria, 2020, ISBN: 9781450389747.

Abstract | Links | BibTeX | Tags:

Botacin, Marcus; Ceschin, Fabricio; de Geus, Paulo; Grégio, André

We Need to Talk About AntiViruses: Challenges & Pitfalls of AV Evaluations Journal Article

Computers & Security, pp. 101859, 2020, ISSN: 0167-4048.

Abstract | Links | BibTeX | Tags:

Botacin, Marcus; de Geus, Paulo Lício; Grégio, André

Leveraging branch traces to understand kernel internals from within Journal Article

Journal of Computer Virology and Hacking Techniques, 2020, ISSN: 2263-8733.

Abstract | Links | BibTeX | Tags:

Botacin, Marcus; Zanata, Marco; Grégio, André

The self modifying code (SMC)-aware processor (SAP): a security look on architectural impact and support Journal Article

Journal of Computer Virology and Hacking Techniques, 2020, ISSN: 2263-8733.

Abstract | Links | BibTeX | Tags:

Sun, R; Botacin, M; Sapountzis, N; Yuan, X; Bishop, M; Porter, D E; Li, X; Gregio, A; Oliveira, D

A Praise for Defensive Programming: LeveragingUncertainty for Effective Malware Mitigation Journal Article

IEEE Transactions on Dependable and Secure Computing, pp. 1-1, 2020.

Links | BibTeX | Tags:

Botacin, Marcus; ~a, Giovanni Bert; de Geus, Paulo; Grégio, André; Kruegel, Christopher; Vigna, Giovanni

On the Security of Application Installers and Online Software Repositories Conference

Detection of Intrusions and Malware, and Vulnerability Assessment, Springer International Publishing, Cham, 2020, ISBN: 978-3-030-52683-2.

Abstract | Links | BibTeX | Tags:

Botacin, Marcus; Grégio, André; Alves, Marco Antonio Zanata

Near-Memory & In-Memory Detection of Fileless Malware Inproceedings

The International Symposium on Memory Systems, pp. 23–38, Association for Computing Machinery, Washington, DC, USA, 2020, ISBN: 9781450388993.

Abstract | Links | BibTeX | Tags: antivirus, malware, pattern matching, processing in memory

2019

Botacin, Marcus; Galante, Lucas; de Geus, Paulo; Grégio, André

RevEngE is a Dish Served Cold: Debug-Oriented Malware Decompilation and Reassembly Inproceedings

Proceedings of the 3rd Reversing and Offensive-Oriented Trends Symposium, Association for Computing Machinery, Vienna, Austria, 2019, ISBN: 9781450377751.

Abstract | Links | BibTeX | Tags:

Ceschin, Fabrício; Botacin, Marcus; Gomes, Heitor Murilo; Oliveira, Luiz S; Grégio, André

Shallow Security: On the Creation of Adversarial Variants to Evade Machine Learning-Based Malware Detectors Inproceedings

Proceedings of the 3rd Reversing and Offensive-Oriented Trends Symposium, Association for Computing Machinery, Vienna, Austria, 2019, ISBN: 9781450377751.

Abstract | Links | BibTeX | Tags:

Botacin, Marcus; de Geus, Paulo Lício; Grégio, André

``VANILLA'' malware: vanishing antiviruses by interleaving layers and layers of attacks Journal Article

Journal of Computer Virology and Hacking Techniques, 2019, ISSN: 2263-8733.

Abstract | Links | BibTeX | Tags:

Botacin, Marcus; Galante, Lucas; Ceschin, Fabricio; Santos, Luigi Carro Paulo Cesar; de Geus, Paulo Licio; Gregio, Andre; Zanata, Marco

The AV says: Your hardware definitions were updated! Conference

14th International Symposium on Reconfigurable Communication-centric Systems-on-Chip (ReCoSoC 2019), IEEE, 2019, ISBN: 978-1-7281-4770-3.

Links | BibTeX | Tags:

Botacin, Marcus; Kalysch, Anatoli; Grégio, André

The Internet Banking [in]Security Spiral: Past, Present, and Future of Online Banking Protection Mechanisms Based on a Brazilian Case Study Inproceedings

Proceedings of the 14th International Conference on Availability, Reliability and Security, pp. 49:1–49:10, ACM, Canterbury, CA, United Kingdom, 2019, ISBN: 978-1-4503-7164-3.

Links | BibTeX | Tags:

Beppler, Tamy; Botacin, Marcus; Ceschin, Fabrício; Oliveira, Luiz E S; Grégio, André

L(a)ying in (Test)Bed: How Biased Datasets Produce Impractical Results for Actual Malware Families’ Classification Inproceedings

Lin, Zhiqiang; Papamanthou, Charalampos; Polychronakis, Michalis (Ed.): Information Security, pp. 381–401, Springer International Publishing, Cham, 2019, ISBN: 978-3-030-30215-3.

Abstract | Links | BibTeX | Tags: learning (artificial intelligence)

2018

Ceschin, Fabrício; Pinage, Felipe; Castilho, Marcos; Menotti, David; Oliveira, Luis S; Gregio, André

The Need for Speed: An Analysis of Brazilian Malware Classifiers Journal Article

IEEE Security Privacy, 16 (6), pp. 31-41, 2018, ISSN: 1540-7993.

Abstract | Links | BibTeX | Tags: Brazilian malware classifers, Feature extraction, invasive software, learning (artificial intelligence), Machine learning, machine-learning systems, malware, malware classification, pattern classification, security, Security of data, Support vector machines

Botacin, Marcus; de Geus, Paulo Lício; Grégio, André

The other guys: automated analysis of marginalized malware Journal Article

Journal of Computer Virology and Hacking Techniques, 14 (1), pp. 87–98, 2018, ISSN: 2263-8733.

Abstract | Links | BibTeX | Tags:

Botacin, Marcus; Geus, Paulo Lício De; Grégio, André

Who Watches the Watchmen: A Security-focused Review on Current State-of-the-art Techniques, Tools, and Methods for Systems and Binary Analysis on Modern Platforms Journal Article

ACM Comput. Surv., 51 (4), pp. 69:1–69:34, 2018, ISSN: 0360-0300.

Links | BibTeX | Tags: Binary analysis, HVM, introspection, malware, security, SMM

Botacin, Marcus; Geus, Paulo Lício De; Grégio, André

Enhancing Branch Monitoring for Security Purposes: From Control Flow Integrity to Malware Analysis and Debugging Journal Article

ACM Trans. Priv. Secur., 21 (1), pp. 4:1–4:30, 2018, ISSN: 2471-2566.

Links | BibTeX | Tags: branch monitor, debug, malware, ROP

Afonso, Vitor; Kalysch, Anatoli; Müller, Tilo; Oliveira, Daniela; Grégio, André; de Geus, Paulo Lício

Lumus: Dynamically Uncovering Evasive Android Applications Inproceedings

Chen, Liqun; Manulis, Mark; Schneider, Steve (Ed.): Information Security, pp. 47–66, Springer International Publishing, Cham, 2018, ISBN: 978-3-319-99136-8.

Abstract | Links | BibTeX | Tags:

2017

Sun, R; Yuan, X; Lee, A; Bishop, M; Porter, D E; Li, X; Grégio, André; Oliveira, Daniela

The dose makes the poison — Leveraging uncertainty for effective malware detection Inproceedings

2017 IEEE Conference on Dependable and Secure Computing, pp. 123-130, 2017.

Links | BibTeX | Tags: