{"id":"https://openalex.org/W4226033155","doi":"https://doi.org/10.1109/milcom52596.2021.9653097","title":"HAPSSA: Holistic Approach to PDF malware detection using Signal and Statistical Analysis","display_name":"HAPSSA: Holistic Approach to PDF malware detection using Signal and Statistical Analysis","publication_year":2021,"publication_date":"2021-11-29","ids":{"openalex":"https://openalex.org/W4226033155","doi":"https://doi.org/10.1109/milcom52596.2021.9653097"},"language":"en","primary_location":{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/milcom52596.2021.9653097","pdf_url":null,"source":{"id":"https://openalex.org/S4363608114","display_name":"MILCOM 2022 - 2022 IEEE Military Communications Conference (MILCOM)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},"type":"article","type_crossref":"proceedings-article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"http://arxiv.org/pdf/2111.04703","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5108745743","display_name":"Tajuddin Manhar Mohammed","orcid":null},"institutions":[{"id":"https://openalex.org/I4210123064","display_name":"Mayachitra (United States)","ror":"https://ror.org/02pvba079","country_code":"US","type":"company","lineage":["https://openalex.org/I4210123064"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Tajuddin Manhar Mohammed","raw_affiliation_strings":["Mayachitra, Inc., Santa Barbara, California"],"affiliations":[{"raw_affiliation_string":"Mayachitra, Inc., Santa Barbara, California","institution_ids":["https://openalex.org/I4210123064"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5042091237","display_name":"Lakshmanan Nataraj","orcid":"https://orcid.org/0000-0002-4510-7237"},"institutions":[{"id":"https://openalex.org/I4210123064","display_name":"Mayachitra (United States)","ror":"https://ror.org/02pvba079","country_code":"US","type":"company","lineage":["https://openalex.org/I4210123064"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Lakshmanan Nataraj","raw_affiliation_strings":["Mayachitra, Inc., Santa Barbara, California"],"affiliations":[{"raw_affiliation_string":"Mayachitra, Inc., Santa Barbara, California","institution_ids":["https://openalex.org/I4210123064"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5083638854","display_name":"Satish Chikkagoudar","orcid":"https://orcid.org/0000-0002-4547-3480"},"institutions":[{"id":"https://openalex.org/I1288214837","display_name":"United States Naval Research Laboratory","ror":"https://ror.org/04d23a975","country_code":"US","type":"facility","lineage":["https://openalex.org/I1288214837","https://openalex.org/I1330347796","https://openalex.org/I175003984","https://openalex.org/I3130687028","https://openalex.org/I4399598358"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Satish Chikkagoudar","raw_affiliation_strings":["U.S. Naval Research Laboratory, Washington, D.C."],"affiliations":[{"raw_affiliation_string":"U.S. Naval Research Laboratory, Washington, D.C.","institution_ids":["https://openalex.org/I1288214837"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5009022144","display_name":"Shivkumar Chandrasekaran","orcid":"https://orcid.org/0000-0003-2508-5605"},"institutions":[{"id":"https://openalex.org/I4210123064","display_name":"Mayachitra (United States)","ror":"https://ror.org/02pvba079","country_code":"US","type":"company","lineage":["https://openalex.org/I4210123064"]},{"id":"https://openalex.org/I154570441","display_name":"University of California, Santa Barbara","ror":"https://ror.org/02t274463","country_code":"US","type":"education","lineage":["https://openalex.org/I154570441"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Shivkumar Chandrasekaran","raw_affiliation_strings":["ECE Department, Mayachitra, Inc., UC Santa Barbara, Santa Barbara, California"],"affiliations":[{"raw_affiliation_string":"ECE Department, Mayachitra, Inc., UC Santa Barbara, Santa Barbara, California","institution_ids":["https://openalex.org/I4210123064","https://openalex.org/I154570441"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5071938464","display_name":"B.S. Manjunath","orcid":"https://orcid.org/0000-0003-2804-3611"},"institutions":[{"id":"https://openalex.org/I4210123064","display_name":"Mayachitra (United States)","ror":"https://ror.org/02pvba079","country_code":"US","type":"company","lineage":["https://openalex.org/I4210123064"]},{"id":"https://openalex.org/I154570441","display_name":"University of California, Santa Barbara","ror":"https://ror.org/02t274463","country_code":"US","type":"education","lineage":["https://openalex.org/I154570441"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"B.S. Manjunath","raw_affiliation_strings":["ECE Department, Mayachitra, Inc., UC Santa Barbara, Santa Barbara, California"],"affiliations":[{"raw_affiliation_string":"ECE Department, Mayachitra, Inc., UC Santa Barbara, Santa Barbara, California","institution_ids":["https://openalex.org/I4210123064","https://openalex.org/I154570441"]}]}],"institution_assertions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.943,"has_fulltext":false,"cited_by_count":7,"citation_normalized_percentile":{"value":0.650408,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":83,"max":84},"biblio":{"volume":null,"issue":null,"first_page":"709","last_page":"714"},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.999,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12034","display_name":"Digital and Cyber Forensics","score":0.9948,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/cryptovirology","display_name":"Cryptovirology","score":0.8029469},{"id":"https://openalex.org/keywords/obfuscation","display_name":"Obfuscation","score":0.6138186},{"id":"https://openalex.org/keywords/evasion","display_name":"Evasion (ethics)","score":0.5644537},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness","score":0.4891372},{"id":"https://openalex.org/keywords/malware-analysis","display_name":"Malware analysis","score":0.45023498},{"id":"https://openalex.org/keywords/code","display_name":"Code (set theory)","score":0.42129394}],"concepts":[{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.93969965},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8307493},{"id":"https://openalex.org/C84525096","wikidata":"https://www.wikidata.org/wiki/Q3506050","display_name":"Cryptovirology","level":3,"score":0.8029469},{"id":"https://openalex.org/C40305131","wikidata":"https://www.wikidata.org/wiki/Q2616305","display_name":"Obfuscation","level":2,"score":0.6138186},{"id":"https://openalex.org/C2781251061","wikidata":"https://www.wikidata.org/wiki/Q5416089","display_name":"Evasion (ethics)","level":3,"score":0.5644537},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.4891372},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.45873275},{"id":"https://openalex.org/C2779395397","wikidata":"https://www.wikidata.org/wiki/Q15731404","display_name":"Malware analysis","level":3,"score":0.45023498},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.42786008},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.42400366},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.42129394},{"id":"https://openalex.org/C97686452","wikidata":"https://www.wikidata.org/wiki/Q7604153","display_name":"Static analysis","level":2,"score":0.41658688},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.39588615},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.07414034},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C8891405","wikidata":"https://www.wikidata.org/wiki/Q1059","display_name":"Immune system","level":2,"score":0.0},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C203014093","wikidata":"https://www.wikidata.org/wiki/Q101929","display_name":"Immunology","level":1,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/milcom52596.2021.9653097","pdf_url":null,"source":{"id":"https://openalex.org/S4363608114","display_name":"MILCOM 2022 - 2022 IEEE Military Communications Conference (MILCOM)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},{"is_oa":true,"landing_page_url":"http://arxiv.org/abs/2111.04703","pdf_url":"http://arxiv.org/pdf/2111.04703","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":["Cornell University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false}],"best_oa_location":{"is_oa":true,"landing_page_url":"http://arxiv.org/abs/2111.04703","pdf_url":"http://arxiv.org/pdf/2111.04703","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":["Cornell University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.68,"display_name":"Peace, justice, and strong institutions"}],"grants":[{"funder":"https://openalex.org/F4320337345","funder_display_name":"Office of Naval Research","award_id":"N68335-17-C-0048"}],"datasets":[],"versions":[],"referenced_works_count":34,"referenced_works":["https://openalex.org/W1519407765","https://openalex.org/W152854583","https://openalex.org/W1566135517","https://openalex.org/W1581009051","https://openalex.org/W166844666","https://openalex.org/W1851403712","https://openalex.org/W1871385855","https://openalex.org/W1956767865","https://openalex.org/W1988146703","https://openalex.org/W1993651556","https://openalex.org/W2010065958","https://openalex.org/W2082190528","https://openalex.org/W2090697035","https://openalex.org/W2100151287","https://openalex.org/W2126401948","https://openalex.org/W2145056020","https://openalex.org/W2156938859","https://openalex.org/W2168154523","https://openalex.org/W2276272452","https://openalex.org/W2296240038","https://openalex.org/W2312936843","https://openalex.org/W2401293755","https://openalex.org/W2725088185","https://openalex.org/W2801790336","https://openalex.org/W2912135847","https://openalex.org/W2935152036","https://openalex.org/W2946525659","https://openalex.org/W2962797452","https://openalex.org/W2964243274","https://openalex.org/W2978640371","https://openalex.org/W3006292440","https://openalex.org/W3033396665","https://openalex.org/W3037015170","https://openalex.org/W3127455599"],"related_works":["https://openalex.org/W4386387815","https://openalex.org/W3037087970","https://openalex.org/W2995172056","https://openalex.org/W2900526031","https://openalex.org/W2470502009","https://openalex.org/W2470029541","https://openalex.org/W2183925834","https://openalex.org/W2132874238","https://openalex.org/W2007647094","https://openalex.org/W109909280"],"abstract_inverted_index":{"Malicious":[0],"PDF":[1,27,40,78,120,141],"documents":[2],"present":[3],"a":[4,71,115,135],"serious":[5],"threat":[6,14],"to":[7,17,35,48,59,77,105,161],"various":[8,98],"security":[9],"organizations":[10],"that":[11,38,81,130,153],"require":[12],"modern":[13],"intelligence":[15],"platforms":[16],"effectively":[18],"analyze":[19],"and":[20,24,84,100,125,143],"characterize":[21,39],"the":[22,56,155],"identity":[23],"behavior":[25],"of":[26,87,117,140],"malware.":[28,41],"State-of-the-art":[29],"approaches":[30],"use":[31],"machine":[32],"learning":[33],"(ML)":[34],"learn":[36],"features":[37],"However,":[42],"ML":[43],"models":[44,96],"are":[45,166],"often":[46],"susceptible":[47],"evasion":[49],"attacks,":[50],"in":[51],"which":[52,165],"an":[53,64],"adversary":[54],"obfuscates":[55],"malware":[57,79,88,102,124,142,159],"code":[58,112],"avoid":[60],"being":[61],"detected":[62],"by":[63,150,158,168],"Antivirus.":[65],"In":[66],"this":[67],"paper,":[68],"we":[69,128],"derive":[70],"simple":[72,151],"yet":[73],"effective":[74],"holistic":[75,132],"approach":[76,133],"detection":[80,103,137],"leverages":[82],"signal":[83],"statistical":[85],"analysis":[86],"binaries.":[89],"This":[90],"includes":[91],"combining":[92],"orthogonal":[93],"feature":[94],"space":[95],"from":[97],"static":[99],"dynamic":[101],"methods":[104,152],"enable":[106],"generalized":[107],"robustness":[108],"when":[109],"faced":[110],"with":[111],"obfuscations.":[113],"Using":[114],"dataset":[116],"nearly":[118],"30,000":[119],"files":[121,148],"containing":[122],"both":[123],"benign":[126],"samples,":[127],"show":[129],"our":[131],"maintains":[134],"high":[136],"rate":[138],"(99.92%)":[139],"even":[144],"detects":[145],"new":[146],"malicious":[147],"created":[149],"remove":[154],"obfuscation":[156],"conducted":[157],"authors":[160],"hide":[162],"their":[163],"malware,":[164],"undetected":[167],"most":[169],"antiviruses.":[170]},"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W4226033155","counts_by_year":[{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":2},{"year":2022,"cited_by_count":4}],"updated_date":"2025-01-18T04:53:50.472753","created_date":"2022-05-05"}