You are here

Orthogonal Approach to Malware Detection and Classification

Award Information
Agency: Department of Defense
Branch: Navy
Contract: N68335-17-C-0048
Agency Tracking Number: N151-067-0409
Amount: $1,982,213.00
Phase: Phase II
Program: SBIR
Solicitation Topic Code: N151-067
Solicitation Number: 15.1
Solicitation Year: 2015
Award Year: 2017
Award Start Date (Proposal Award Date): 2016-11-02
Award End Date (Contract End Date): 2022-03-30
Small Business Information
5266 Hollister Avenue, Suite 229
Santa Barbara, CA 93111
United States
DUNS: 097607852
HUBZone Owned: No
Woman Owned: No
Socially and Economically Disadvantaged: No
Principal Investigator
 Lakshmanan Nataraj
 Research Staff Member
 (805) 967-9828
Business Contact
 Bangalore S. Manjunath
Phone: (805) 448-8227
Research Institution

Today's commercial Antivirus defense mechanisms are based on scanning systems for suspicious activity. If such an activity is found, the suspect files are either quarantined or the vulnerable system is patched with an update. In turn, the Antivirus software are also updated with new signatures to identify such activities in future. Such scanning methods are based on a variety of techniques such as static analysis, dynamic analysis and other heuristics based techniques, which are often slow to react to new attacks and threats. This Phase II project aims at developing orthogonal approaches based on signal/image processing and pattern recognition. Building upon the Phase I findings, we we will develop MALSEE, a tool to detect malware with high accuracy and precision, Next we will develop an engine that integrates signal/image based malware techniques with standard security methods and provide insights both from a signal/image and security point of view. Since our methodologies are agnostic of the operating systems and platforms, we will extend our developed methods to handle malware belonging to different platforms. Finally we will focus on mapping millions of malware to points in 2D/3D space using signal/image similarity descriptors and security descriptors, for detection and visualization.

* Information listed above is at the time of submission. *

US Flag An Official Website of the United States Government