A Malware Detection Method Based On Active Learning For Database

Che Jing,Zhang Ying
DOI: https://doi.org/10.3969/j.issn.1009-6833.2012.10.022
2012-01-01
Abstract:First,the conception of malicious behavior characteristics signatures from the database session behavior is defined.Then,the risk factor to describe the dangers of the malicious behavior of a short sequence is proposed.Last,the risk rand is introduced to divide the software into malicious software and normal software.And a prototype system is developed in MySQL.The experimental results show that the malicious behavior detection correct rate of about 82% with this method which has a high detection correct rate and a low false alarm rate and false negative rate.
What problem does this paper attempt to address?