Alpha Presentation Defeating Malware Payload Obfuscation The Capstone Experience Team Proofpoint Adam Johanknecht Nick Lojewski Vivian Qian Derek Renusch Dan Somary Department of Computer Science and Engineering Michigan State University From Students… Spring 2019 …to Professionals
Project Overview • Create a machine learning system to classify files as malicious or benign ▪ Accuracy goal: have at least the same accuracy as sandbox detonation ▪ Performance goal: be at least 50% faster than detonation in Cuckoo • Display information in web dashboard ▪ High level system information ▪ Ability to look at details for individual files The Capstone Experience Team Proofpoint Alpha Presentation 5
System Architecture The Capstone Experience Team Proofpoint Alpha Presentation 6
Dashboard The Capstone Experience Team Proofpoint Alpha Presentation 7
File Drill Down – Malicious File The Capstone Experience Team Proofpoint Alpha Presentation 8
File Drill Down – Benign File The Capstone Experience Team Proofpoint Alpha Presentation 9
File Upload The Capstone Experience Team Proofpoint Alpha Presentation 10
What’s left to do? • Handle additional file types • Create feedback loops for Machine Learning • Send low confidence files to Cuckoo • Display system health information • Improve main dashboard The Capstone Experience Team Proofpoint Alpha Presentation 11
Questions? ? ? ? ? ? ? ? ? ? The Capstone Experience Team Proofpoint Alpha Presentation 12
Recommend
More recommend