In this paper we present analytical techniques that can be used to better understand the behavior of malware, a generic term that refers to all kinds of malicious software programs propagating on the Internet, such as e-mail viruses and worms. We develop a modeling methodology based on Interactive Markov Chains that is able to capture many aspects of the problem, especially the impact of the underlying topology on the spreading characteristics of malware. We propose numerical methods to obtain useful bounds and approximations in the case of very large systems, validating our results through simulation. An analytic methodology represents a fundamentally important step in the development of effective countermeasures for future malware activity. Furthermore, we believe our approach can help to understand a wide range of “dynamic interactions on networks”, such as routing protocols and peer-to-peer applications.

Modeling Malware Spreading Dynamics

GARETTO, MICHELE;
2003-01-01

Abstract

In this paper we present analytical techniques that can be used to better understand the behavior of malware, a generic term that refers to all kinds of malicious software programs propagating on the Internet, such as e-mail viruses and worms. We develop a modeling methodology based on Interactive Markov Chains that is able to capture many aspects of the problem, especially the impact of the underlying topology on the spreading characteristics of malware. We propose numerical methods to obtain useful bounds and approximations in the case of very large systems, validating our results through simulation. An analytic methodology represents a fundamentally important step in the development of effective countermeasures for future malware activity. Furthermore, we believe our approach can help to understand a wide range of “dynamic interactions on networks”, such as routing protocols and peer-to-peer applications.
2003
INFOCOM 2003
San Francisco, CA
30 March-3 April, 2003
INFOCOM 2003. Twenty-Second Annual Joint Conference of the IEEE Computer and Communications Societies
IEEE
3
1869
1879
M. GARETTO; GONG W; TOWSLEY D.F
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/2318/18067
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 152
  • ???jsp.display-item.citation.isi??? 86
social impact