Malware analysis reverse engineering (MARE) methodology & malware defense (M.D.) timeline
Cory Q. Nguyen, James E. Goldman
Abstract
Cory Q. Nguyen, James E. Goldman
Abstract
Currently there exist no formal or structured method for analyzing malware, the implications of a hodgepodge method leads to inconsistencies and incomplete findings of analyzed malware. Malware Analysis and Reverse Engineering (MARE) is a methodology that introduces a structured approach to malware analysis. A structured approach leads to a more consistent and complete analysis report. The MARE methodology is designed to take a malware analyst from the moment of detecting malware to the end of fully grasping the analyzed malware's full functionality and capabilities. The MARE methodology presents helpful tools and more importantly, a structured process flow to help analyst better understand how to analyze malware. The Malware Defense (M.D.) timeline maps out our ultimate research goal and presents where we are currently at in reaching that goal - eliminate the threat of malware. Finally, the applicability of MARE to the judicial system and teaching is discussed.
OpenAlex reports 10 citations for this work. Citation counts describe recorded attention and do not establish research quality.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
Currently there exist no formal or structured method for analyzing malware, the implications of a hodgepodge method leads to inconsistencies and incomplete findings of analyzed malware. Malware Analysis and Reverse Engineering (MARE) is a methodology that introduces a structured approach to malware analysis. A structured approach leads to a more consistent and complete analysis report. The MARE methodology is designed to take a malware analyst from the moment of detecting malware to the end of fully grasping the analyzed malware's full functionality and capabilities. The MARE methodology presents helpful tools and more importantly, a structured process flow to help analyst better understand how to analyze malware. The Malware Defense (M.D.) timeline maps out our ultimate research goal and presents where we are currently at in reaching that goal - eliminate the threat of malware. Finally, the applicability of MARE to the judicial system and teaching is discussed.
Key concepts: Malware, Timeline, Malware analysis, Computer science, Cryptovirology, Reverse engineering, Process (computing), Computer security