IoT Malware Static and Dynamic Analysis System

Dept. Of Computer Engineering, Yeungnam Univ., 280 Daehak-Ro, Gyeongsan, Gyeongbuk, Republic of Korea, Sungwon Lee, Korea Appraisal Board, 291, Innovalley-ro, Dong-gu, Daegu, Republic of Korea, HyeonKyu Jeon, Gihyun Park, JiHun Kim, Dept. Of Computer Engineering, Yeungnam Univ., 280 Daehak-Ro, Gyeongsan, Gyeongbuk, Republic of Korea, Jonghee M. Youn · Journal of Human-centric Science and Technology Innovation · 2021

As the spread of IoT systems increases, security of IoT systems has become very important for individuals and companies.IoT malware has been increasing exponentially since the emergence of Mirai in 2016.Since the IoT system environment is diverse, IoT malware also has various environments.In the case of the existing analysis system, there is no environment for dynamic analysis by running IoT malware of various architectures.It is inefficient in time and cost to construct an environment one by one to analyze numerous malicious codes and proceed with analysis.There are so many IoT malware to be analyzed that an efficient method of analysis is required.The goal of this paper is to improve the problems and limitations of the existing analysis system and provide a variety of analysis environments.In this paper, we build a system that automatically analyzes basic IoT malware.It provides an analysis environment by constructing a static analysis and dynamic analysis system suitable for various IoT malware.In the text, the analysis system is applied to the actual collected malicious code to check whether it is analyzed and to derive statistics.It describes the advantages of the designed system and the improvement of existing limitations through comparison with the most commonly used automation analysis tools.

Read the paper · More papers on PaperTik