Sourabh Satish explores the approach to behavioural security and talked about it at the DeepSec 2011 security conference:
"Rule-based behavioral security has been talked about for decades BUT is it really the silver bullet solution to the malware problem? We don’t think so. In this talk, we’ll discuss the pros and cons of rule-based behavioral systems, using real-world threats as case studies to showcase the approach’s strengths and weaknesses. Next we will discuss how techniques such as supervised and unsupervised machine learning can address many of the inherent limitations in legacy behavioral systems. We will demonstrate how to implement such a machine learning-based behavioral system using freely available tools like WEKA, and provide the attendee with sufficient information to further investigate this area on their own. Finally, we will discuss their limitations of these machine learning-based solutions and propose several potentially fruitful areas of research. The talk will use real world threat examples to illustrate points."

Loading more stuff…

Hmm…it looks like things are taking a while to load. Try again?

Loading videos…