Matches in SemOpenAlex for { <https://semopenalex.org/work/W3023980642> ?p ?o ?g. }
Showing items 1 to 69 of
69
with 100 items per page.
- W3023980642 endingPage "101859" @default.
- W3023980642 startingPage "101859" @default.
- W3023980642 abstract "Security evaluation is an essential task to identify the level of protection accomplished in running systems or to aid in choosing better solutions for each specific scenario. Although antiviruses (AVs) are one of the main defensive solutions for most end-users and corporations, AV’s evaluations are conducted by few organizations and often limited to compare detection rates. Moreover, other important factors of AVs’ operating mode (e.g., response time and detection regression) are usually underestimated. Ignoring such factors create an “understanding gap” on the effectiveness of AVs in actual scenarios, which we aim to bridge by presenting a broader characterization of current AVs’ modes of operation. In our characterization, we consider distinct file types, operating systems, datasets, and time frames. To do so, we daily collected samples from two distinct, representative malware sources and submitted them to the VirusTotal (VT) service for 30 consecutive days. In total, we considered 28,875 unique malware samples. For each day, we retrieved the submitted samples’ detection rates and assigned labels, resulting in more than 1M distinct VT submissions overall. Our experimental results show that: (i) phishing contexts are a challenge for all AVs, turning malicious Web pages detectors less effective than malicious files detectors; (ii) generic procedures are insufficient to ensure broad detection coverage, incurring in lower detection rates for particular datasets (e.g., country-specific) than for those with world-wide collected samples; (iii) detection rates are unstable since all AVs presented detection regression effects after scans in different time frames using the same dataset and (iv) AVs’ long response times in delivering new signatures/heuristics create a significant attack opportunity window within the first 30 days after we first identified a malicious binary. To address the effects of our findings, we propose six new metrics to evaluate the multiple aspects that impact the effectiveness of AVs. With them, we hope to assess corporate (and domestic) users to better evaluate the solutions that fit their needs more adequately." @default.
- W3023980642 created "2020-05-13" @default.
- W3023980642 creator A5024273591 @default.
- W3023980642 creator A5030227042 @default.
- W3023980642 creator A5059851424 @default.
- W3023980642 creator A5060510652 @default.
- W3023980642 date "2020-08-01" @default.
- W3023980642 modified "2023-10-05" @default.
- W3023980642 title "We need to talk about antiviruses: challenges & pitfalls of AV evaluations" @default.
- W3023980642 cites W2132504937 @default.
- W3023980642 cites W2747456275 @default.
- W3023980642 cites W2806988516 @default.
- W3023980642 cites W2897615540 @default.
- W3023980642 cites W2911250519 @default.
- W3023980642 cites W3004908285 @default.
- W3023980642 cites W3015443841 @default.
- W3023980642 doi "https://doi.org/10.1016/j.cose.2020.101859" @default.
- W3023980642 hasPublicationYear "2020" @default.
- W3023980642 type Work @default.
- W3023980642 sameAs 3023980642 @default.
- W3023980642 citedByCount "17" @default.
- W3023980642 countsByYear W30239806422020 @default.
- W3023980642 countsByYear W30239806422021 @default.
- W3023980642 countsByYear W30239806422022 @default.
- W3023980642 countsByYear W30239806422023 @default.
- W3023980642 crossrefType "journal-article" @default.
- W3023980642 hasAuthorship W3023980642A5024273591 @default.
- W3023980642 hasAuthorship W3023980642A5030227042 @default.
- W3023980642 hasAuthorship W3023980642A5059851424 @default.
- W3023980642 hasAuthorship W3023980642A5060510652 @default.
- W3023980642 hasConcept C100776233 @default.
- W3023980642 hasConcept C126322002 @default.
- W3023980642 hasConcept C162324750 @default.
- W3023980642 hasConcept C187736073 @default.
- W3023980642 hasConcept C2780451532 @default.
- W3023980642 hasConcept C38652104 @default.
- W3023980642 hasConcept C41008148 @default.
- W3023980642 hasConcept C541664917 @default.
- W3023980642 hasConcept C71924100 @default.
- W3023980642 hasConceptScore W3023980642C100776233 @default.
- W3023980642 hasConceptScore W3023980642C126322002 @default.
- W3023980642 hasConceptScore W3023980642C162324750 @default.
- W3023980642 hasConceptScore W3023980642C187736073 @default.
- W3023980642 hasConceptScore W3023980642C2780451532 @default.
- W3023980642 hasConceptScore W3023980642C38652104 @default.
- W3023980642 hasConceptScore W3023980642C41008148 @default.
- W3023980642 hasConceptScore W3023980642C541664917 @default.
- W3023980642 hasConceptScore W3023980642C71924100 @default.
- W3023980642 hasFunder F4320321091 @default.
- W3023980642 hasLocation W30239806421 @default.
- W3023980642 hasOpenAccess W3023980642 @default.
- W3023980642 hasPrimaryLocation W30239806421 @default.
- W3023980642 hasRelatedWork W1827256152 @default.
- W3023980642 hasRelatedWork W2617467194 @default.
- W3023980642 hasRelatedWork W2738219410 @default.
- W3023980642 hasRelatedWork W2951553000 @default.
- W3023980642 hasRelatedWork W2980605179 @default.
- W3023980642 hasRelatedWork W3016595359 @default.
- W3023980642 hasRelatedWork W4205985752 @default.
- W3023980642 hasRelatedWork W4284893819 @default.
- W3023980642 hasRelatedWork W4313314976 @default.
- W3023980642 hasRelatedWork W4366249425 @default.
- W3023980642 hasVolume "95" @default.
- W3023980642 isParatext "false" @default.
- W3023980642 isRetracted "false" @default.
- W3023980642 magId "3023980642" @default.
- W3023980642 workType "article" @default.