Home » Publication » 13641

Dettaglio pubblicazione

2018, Cyber Threat Intelligence, Pages 169-191

PDF-Malware Detection: A Survey and Taxonomy of Current Techniques (02a Capitolo o Articolo)

Elingiusti M., Aniello L., Querzoni L., Baldoni R.

Portable Document Format, more commonly known as PDF, has become, in the last 20 years, a standard for document exchange and dissemination due its portable nature and widespread adoption. The flexibility and power of this format are not only leveraged by benign users, but from hackers as well who have been working to exploit various types of vulnerabilities, overcome security restrictions, and then transform the PDF format in one among the leading malicious code spread vectors. Analyzing the content of malicious PDF files to extract the main features that characterize the malware identity and behavior, is a fundamental task for modern threat intelligence platforms that need to learn how to automatically identify new attacks. This paper surveys existing state of the art about systems for the detection of malicious PDF files and organizes them in a taxonomy that separately considers the used approaches and the data analyzed to detect the presence of malicious code. © Springer International Publishing AG, part of Springer Nature 2018.
ISBN: 978-3-319-73950-2; 978-3-319-73951-9
keywords
© Università degli Studi di Roma "La Sapienza" - Piazzale Aldo Moro 5, 00185 Roma