The ingenuity of malware substitution: Bypassing next-generation Antivirus
Osama Ellahi, Munam Ali Shah, Muhammad Usman Rana · 2021
In cybersecurity, malware plays a very significant role. With every passing day, attackers are coming up with new techniques and in most cases, they are successful and cause destruction to the data. On the other hand, anti-viruses or malware detection software detect and prevent malwares based on some detection rules. Malware consists of a lot of techniques such as social engineering, persistence, exfiltration, reverse connection, and password cracking are the most common techniques. Anti-viruses are also emerging and use machine learning algorithms to scan the behavior of malicious software and programs. In this paper, we discuss some very hard broken techniques that attackers are using in new attacks launched on the operating systems. We discuss the methods that how attackers use encryption, oligomorphic, metamorphism, obfuscation, code reusability, account violation and password-protected malware to trick anti-viruses and bypass scanning procedures. This paper also tells the reader about bypassing next-generation anti-viruses that use machine learning and analyze how old techniques are different and less applicable in a dynamic operating system environment.