Lecture 10

NimbleBananaTree avatar
NimbleBananaTree
·
·
Download

Start Quiz

Study Flashcards

10 Questions

What is the primary purpose of malware classification?

To provide information about the source and motives of an adversary

What is the difference between malware detection and malware classification?

Detection involves detecting malware, while classification assigns a class of malware to a given sample

What was the initial number of features collected for malware classification?

50 million

What was the dimensionality of the dataset after feature selection and random projections?

179,000

What was the best performing DNN architecture for malware classification?

A DNN with one hidden layer

What was the error rate on malware type for the best performing DNN architecture?

9.53%

What is the purpose of DGAs in malware tools?

To generate large numbers of domain names for difficult-to-track communications with C2 servers

Why is it difficult to block malicious domains using standard techniques such as blacklisting or sink-holing?

Because DGAs generate large numbers of varying domain names

What are some of the cyber-attacks that DGAs are used for?

Spam campaigns, theft of personal data, and implementation of distributed denial-of-service (DDoS) attacks

What was the error rate on malware type for a DNN with nine layers?

97%

Learn how Domain Generation Algorithms (DGAs) work and how they are used by malware to generate domain names. Explore techniques for detecting and identifying domain names generated by DGAs, including the use of GRU (Gated Recurrent Unit) nodes in an RNN.

Make Your Own Quizzes and Flashcards

Convert your notes into interactive study material.

Get started for free
Use Quizgecko on...
Browser
Browser