论文标题
恶意软件和在黑暗网络上的利用
Malware and Exploits on the Dark Web
论文作者
论文摘要
近年来,DarkNet已成为分发恶意软件和利用的关键位置。我们已经看到了供应商披露软件漏洞的场景,此后不久,在DarkNet论坛和市场上提供了运营利用。许多市场供应商提供尚未发现或披露的零日漏洞。这种趋势导致安全公司提供DarkNet分析服务以检测新的利用和恶意软件,从而提供主动的威胁情报。本文介绍了有关恶意软件分布规模的信息,提供的恶意软件类型的趋势,发现新漏洞利用的方法以及DarkNet分析在最早可能阶段检测恶意软件时的有效性。
In recent years, the darknet has become the key location for the distribution of malware and exploits. We have seen scenarios where software vulnerabilities have been disclosed by vendors and shortly after, operational exploits are available on darknet forums and marketplaces. Many marketplace vendors offer zero-day exploits that have not yet been discovered or disclosed. This trend has led to security companies offering darknet analysis services to detect new exploits and malware, providing proactive threat intelligence. This paper presents information on the scale of malware distribution, the trends of malware types offered, the methods for discovering new exploits and the effectiveness of darknet analysis in detecting malware at the earliest possible stage.