Conference item
A novel behavioural screenlogger detection system
- Abstract:
- Among the various types of spyware, screenloggers are distinguished by their ability to capture screenshots. This gives them considerable nuisance capacity, giving rise to theft of sensitive data or, failing that, to serious invasions of the privacy of users. Several examples of attacks relying on this screen capture feature have been documented in recent years. Moreover, on desktop environments, taking screenshots is a legitimate functionality used by many benign applications, which makes screenlogging activities particularly stealthy. However, existing malware detection approaches are not adapted to screenlogger detection due to the composition of their datasets and the way samples are executed. In this paper, we propose the first dynamic detection approach based on a dataset of screenloggers and legitimate screenshot-taking applications (built in a previous work), with a particular care given to the screenshot functionality during samples execution. We also propose a tailored detection approach based on novel features specific to screenloggers. This last approach yields better results than an approach using traditional API call and network features trained on the same dataset (minimum increase of 3.108% in accuracy).
- Publication status:
- Published
- Peer review status:
- Peer reviewed
Actions
Access Document
- Files:
-
-
(Preview, Accepted manuscript, pdf, 192.4KB, Terms of use)
-
- Publisher copy:
- 10.1007/978-3-030-91356-4_15
Authors
- Publisher:
- Springer
- Pages:
- 279-295
- Series:
- Lecture Notes in Computer Science
- Series number:
- 13118
- Publication date:
- 2021-11-27
- Acceptance date:
- 2021-09-03
- Event title:
- 24th Information Security Conference (ISC)
- Event location:
- Bali , Indonesia
- Event start date:
- 2021-11-09
- Event end date:
- 2021-11-13
- DOI:
- EISBN:
- 978-3-030-91356-4
- Language:
-
English
- Keywords:
- Pubs id:
-
1207912
- Local pid:
-
pubs:1207912
- Deposit date:
-
2021-11-11
Terms of use
- Copyright holder:
- Springer Nature Switzerland AG
- Copyright date:
- 2021
- Rights statement:
- Copyright © 2021, Springer Nature Switzerland AG.
- Notes:
-
This is the accepted manuscript version of the article. The final version is available from Springer at https://doi.org/10.1007/978-3-030-91356-4_15
If you are the owner of this record, you can report an update to it here: Report update to this record