Malware signing detection system
Ajay Jain, Kusha Chopra · ACM SIGSOFT Software Engineering Notes · 2013
Software malware not only creates financial damages to corporate and individual computer users, but also invades privacy, exploits their devices and induces other significant losses. While efficient tools and technologies that control and limit malware spread across devices in the public domain are being developed, the problem is far from being resolved. We worked on a methodology that uses techniques to detect malware during in-house development and prevents malware from being released in the field. This work helps determine and handle situations where a person, authorized to access an authentic signing certificate [1] signs malware (or set of file(s)) intended to perform harmful operations, such as spreading a virus on a computer using the said certificate, and releases the malicious code publically or to a community.