diff --git a/yfaq/references_to_mbc.md b/yfaq/references_to_mbc.md index bb5d7a1..3dc5538 100644 --- a/yfaq/references_to_mbc.md +++ b/yfaq/references_to_mbc.md @@ -1,21 +1,36 @@ # MBC in the Wild -The following table contains community references to MBC: +The following table lists papers and presentations that reference MBC. | Date | Reference | |------|-----------| -| Aug 2022 | AccidentalRebel, “Talking about Mitre's Malware Behavior Catalog” Blackhat Middle East & Africa community meetup lightning talk, 2022. https://www.accidentalrebel.com/talking-about-mitres-malware-behavior-catalog.html | -| Dec 2021 | L.F. Martin, “PIFMANA: Pipeline for Malware Analysis,” Master Thesis, Universitat Oberta de Catalunya, 2021. | -| Dec 2021 | K. Oosthoek and C. Doerr, "Inside the Matrix: CTI Frameworks as Partial Abstractions of Complex Threats," 2021 IEEE International Conference on Big Data (Big Data), 2021. | -| Dec 2021 | M. R. Smith et al., "Malware Generation with Specific Behaviors to Improve Machine Learning-based Detection," 2021 IEEE International Conference on Big Data (Big Data), 2021. | -| Nov 2021 | K. Licudine, Blackhat Middle East community meetup presentation. https://www.linkedin.com/posts/juan-karlo-licudine_malware-community-middleeast-activity-6958155280530456576-UUlb/ | -| Nov 2021 | F. Bilstein, “Capability Analysis of Malicious Software,” Universitat Bonn, Nov 2021 (advisor: Daniel Plohmann, Malpedia) | +| May 2024 | M. Beninger et al, “ERSO: Enhancing Military Cybersecurity with AI-Driven SBOM for Firmware Vulnerability Detection and Asset Management,” CyCon 2024. https://ccdcoe.org/uploads/2024/05/CyCon_2024_Beninger_Charland_Ding_Fung-1.pdf ​| +| Apr 2024 | A. Nadeem, “Understanding Adversary Behavior via XAI: Leveraging Sequence Clustering To Extract Threat Intelligence,” Thesis, TU Delft. https://research.tudelft.nl/en/publications/understanding-adversary-behavior-via-xai-leveraging-sequence-clus ​| +| Mar 2024 | A. Nair and G. Ramesh, “Ontology-Driven Behavioral Model for Ransomware Traceability.” https://papers.ssrn.com/sol3/papers.cfm?abstract_id=4779064 ​| +| Jan 2024 | A. Ruggia, “Unmasking the Veiled: A Comprehensive Analysis of Android Evasive Malware.” ​https://hal.science/hal-04378941/ | +| Dec 2023 | D. Sim et al, “A SIEM and Multiple Analysis Software Integrated Malware Detection Approach.” https://ieeexplore.ieee.org/abstract/document/10425463 ​| +| Aug 2023 | J. Liu et al, “MRm-DLDet: a memory-resident malware detection framework based on memory forensics and deep neural network.” https://link.springer.com/article/10.1186/s42400-023-00157-w ​| +| Jul 2023​ | D. Beck, “Malware Behavior Catalog,” Poster at 14th Annual Malware TEM, Lawrence Livermore National Laboratory, 25-26 July 2023.​ | +| Mar 2023​ | M. Smith et al, “All Models are Wrong, but Some(times) are Useful: Evaluating when Machine Learning Models are Useful for Detecting Novel Malware in the Wild,” Sandia NL, 2022. https://www.osti.gov/servlets/purl/2005426​ | +| Mar 2023​ | S. Kumari, “TRY HACK ME: Basic Static Analysis Write-Up,” Medium, 3/13/2023. https://medium.com/@kumarishefu.4507/try-hack-me-basic-static-analysis-write-up-500b0e23792d ​| +| Feb 2023​ | L. Zeltser, “SANS DFIR Malware Analysis Tips and Tricks Poster.” https://www.sans.org/posters/malware-analysis-tips-tricks-poster/ ​| +| Oct 2022​ | M. Smith, “MalGen: Malware Generation with Specific Behaviors to Improve Machine Learning-based Detectors.” https://www.osti.gov/biblio/1893244 ​| +| Sep 2022 | R. Marinho et al, ”Introdução à Análise de Códigos Maliciosos para ambiente Windows.” https://sol.sbc.org.br/livros/index.php/sbc/catalog/download/107/479/752-1 ​| +| Aug 2022 | AccidentalRebel, “Talking about Mitre's Malware Behavior Catalog” Blackhat Middle East & Africa community meetup lightning talk, 2022. https://www.accidentalrebel.com/talking-about-mitres-malware-behavior-catalog.html | +| Jul 2022​ | K. Licudine, “MBCScan,” scans a file for MBC behaviors. https://github.com/accidentalrebel/mbcscan ​| +| May 2022​ | “Hackers-Tools.” https://github.com/Willian-2-0-0-1/Hacker-s-Tools-/blob/main/README.md ​| +| Dec 2021 | L.F. Martin, “PIFMANA: Pipeline for Malware Analysis,” Master Thesis, Universitat Oberta de Catalunya, 2021. | +| Dec 2021 | K. Oosthoek and C. Doerr, "Inside the Matrix: CTI Frameworks as Partial Abstractions of Complex Threats," 2021 IEEE International Conference on Big Data (Big Data), 2021. | +| Dec 2021 | M. R. Smith et al., "Malware Generation with Specific Behaviors to Improve Machine Learning-based Detection," 2021 IEEE International Conference on Big Data (Big Data), 2021. | +| Nov 2021 | K. Licudine, Blackhat Middle East community meetup presentation. https://www.linkedin.com/posts/juan-karlo-licudine_malware-community-middleeast-activity-6958155280530456576-UUlb/ | +| Nov 2021 | F. Bilstein, “Capability Analysis of Malicious Software,” Universitat Bonn, Nov 2021 (advisor: Daniel Plohmann, Malpedia) | | Oct 2021 | M. M. Islam, A. Dutta, M. S. I. Sajid, E. Al-Shaer, J. Wei and S. Farhang, "CHIMERA: Autonomous Planning and Orchestration for Malware Deception," 2021 IEEE Conference on Communications and Network Security (CNS), 2021. | -| Sep 2021 | D. Beck, “Malware Behavior Catalog,” DoD/NNSA SwA CoP 2021, Sept 2021. | -| Jul 2021 | N. Johnson, “Going Beyond Signature Malware Detection by Learning Behaviors,” Sandia. SAND2021-8104C. | -| Nov 2020 | M.R. Smith et al, “Mind the Gap: On Bridging the Semantic Gap between Machine Learning and Information Security,” AISec ’20, 13 Nov 2020. | -| Oct 2020 | D. Beck, “Standardized Reporting with MBC,” VB2020 localhost | -| May 2020 | M.R. Smith et al, “Mind the Gap: On Bridging the Semantic Gap between Machine Learning and Information Security,” arXivLabs, May 2020. | -| Oct 2019 | D. Beck, “Malware Behavior Catalog,” BSidesDC, Oct 2019. | -| Jul 2019 | D. Beck, “Malware Behavior Catalog,” MTEM, July 2019. | -| Jun 2019 | K. O’Meara, “Behavioral Matrix and Tool Analysis of Energetic Bear and GreyEnergy Actor,” SEI CERT Coordination Center, June 2019. | +| Sep 2021 | D. Beck, “Malware Behavior Catalog,” DoD/NNSA SwA CoP 2021, Sept 2021. | +| Jul 2021 | N. Johnson, “Going Beyond Signature Malware Detection by Learning Behaviors,” Sandia. SAND2021-8104C. | +| Apr 2021​ | K. Licudine, “mbclib,” library for querying the STIX data for MBC. https://pypi.org/project/mbclib/#description ​| +| Nov 2020 | M.R. Smith et al, “Mind the Gap: On Bridging the Semantic Gap between Machine Learning and Information Security,” AISec ’20, 13 Nov 2020. | +| Oct 2020 | D. Beck, “Standardized Reporting with MBC,” VB2020 localhost. | +| May 2020 | M.R. Smith et al, “Mind the Gap: On Bridging the Semantic Gap between Machine Learning and Information Security,” arXivLabs, May 2020. | +| Oct 2019 | D. Beck, “Malware Behavior Catalog,” BSidesDC, Oct 2019. | +| Jul 2019 | D. Beck, “Malware Behavior Catalog,” MTEM, July 2019. | +| Jun 2019 | K. O’Meara, “Behavioral Matrix and Tool Analysis of Energetic Bear and GreyEnergy Actor,” SEI CERT Coordination Center, June 2019. |