A YARA-based approach for detecting cyber security attack types

Abstract

Technological advancements have recently propelled individuals, institutions, and organizations to conduct their business processes on information systems. However, keeping personal and corporate data on information systems has given rise to issues related to data security. The accessibility of data on information systems has made it vulnerable to theft and exploitation by malicious groups or individuals, thus posing a significant risk to data security. Consequently, the demand for data security has led to a new business sector offering various cybersecurity solutions to protect organizations' systems. This paper presents an analysis of the prevalent types of cyber attacks worldwide. The study aims to create a virtual environment with Windows and Linux systems in Forensic Informatics and Incident Response processes to apply frequently used cyber attack methods, develop defense mechanisms against these methods, and contribute to revealing the root cause by solving the incident pattern. Furthermore, this application demonstrates how manual techniques and open-source solutions, such as YARA, can be used to detect malware derivatives commonly found in Windows systems.

Authors and Affiliations

Kubra YILDIRIM, Mustafa Emre DEMIR, Tugce KELES, Arif Metahan YILDIZ, Sengul DOGAN, Turker TUNCER

Keywords

Related Articles

Damage Assessment of Masonry Structures in Adıyaman Province After Kahramanmaraş Earthquakes (February 6, 2023)

According to the data of the Disaster and Emergency Management (AFAD) Earthquake Department; On February 6, 2023, at 4.17 and 13.24 Turkey time, earthquakes with magnitudes of 7.7 and 7.6 (Mw) occurred, respectively, wi...

Production and characterization of chitosan-based polymer particles with the precipitation collection method

In this study, a chitosan-based polymer particle was produced to be used as a sorbent. Gel particle production was carried out using chitosan samples with different acetylation degrees and molecular weights. The produced...

Effect of layer number on bending behavior of 3D spacer composite plates produced with different methods

In this study, the three-point bending behavior of laminated composite plates reinforced with three-dimensional (3D) spacer fabric was experimentally investigated. Composite plate production was carried out using hand l...

Enhancing Sustainability in Asphalt Concrete: Utilizing Ceramic Cake Waste and Performance Analysis

The rapid growth of the global population has led to an increased demand for vehicles and industrial products, resulting in heightened production levels. Unfortunately, this surge in production inevitably generates signi...

Obtaining and modeling the relaxation modulus of self-healing asphalt mixtures

In this study, pure and self-healing asphalt mixture samples were obtained by adding capsules containing waste vegetable oil to mixtures at 0.25, 0.50, 0.75 and 1.00% ratios. Afterwards, creep test with a constant stress...

Download PDF file
  • EP ID EP718141
  • DOI 10.5505/fujece.2023.09709
  • Views 28
  • Downloads 0

How To Cite

Kubra YILDIRIM, Mustafa Emre DEMIR, Tugce KELES, Arif Metahan YILDIZ, Sengul DOGAN, Turker TUNCER (2023). A YARA-based approach for detecting cyber security attack types. Firat University Journal of Experimental and Computational Engineering, 2(2), -. https://europub.co.uk/articles/-A-718141