Beta Presentation Improved Detonation of Evasive Malware The - - PowerPoint PPT Presentation

beta presentation
SMART_READER_LITE
LIVE PREVIEW

Beta Presentation Improved Detonation of Evasive Malware The - - PowerPoint PPT Presentation

Beta Presentation Improved Detonation of Evasive Malware The Capstone Experience Team Proofpoint Kyutae Park Ian Murray Sean Joseph Jack Mansueti Ryan Gallant Department of Computer Science and Engineering Michigan State University From


slide-1
SLIDE 1

From Students… …to Professionals

The Capstone Experience

Beta Presentation

Improved Detonation of Evasive Malware

Department of Computer Science and Engineering Michigan State University Fall 2018

Team Proofpoint

Kyutae Park Ian Murray Sean Joseph Jack Mansueti Ryan Gallant

slide-2
SLIDE 2

Project Overview

  • Malware sample is submitted into Cuckoo
  • Cuckoo runs malware sample
  • If sample shows signs of evasive behavior, the

sample is modified and submitted again

  • Cuckoo sends results of resubmission to

dashboard

Team Proofpoint Beta Presentation

slide-3
SLIDE 3

System Architecture

Team Proofpoint Beta Presentation

slide-4
SLIDE 4

Landing Page

Team Proofpoint Beta Presentation

slide-5
SLIDE 5

Dashboard

Team Proofpoint Beta Presentation

slide-6
SLIDE 6

Results

Team Proofpoint Beta Presentation

slide-7
SLIDE 7

Modification in Progress

Team Proofpoint Beta Presentation

slide-8
SLIDE 8

What’s left to do?

  • Integration with Proofpoint’s malware input

stream

  • Improved Detonation with Complex Samples
  • Programmatically change algorithms for

samples based on analysis

Team Proofpoint Beta Presentation

slide-9
SLIDE 9

Questions?

Team Proofpoint Beta Presentation

? ? ? ? ? ? ? ? ?