Skip to Main Content (Press Enter)

Logo CNR
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze

UNI-FIND
Logo CNR

|

UNI-FIND

cnr.it
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze
  1. Pubblicazioni

Revealing MageCart-like Threats in Favicons via Artificial Intelligence

Contributo in Atti di convegno
Data di Pubblicazione:
2022
Abstract:
Modern malware increasingly takes advantage of information hiding to avoid detection, spread infections, and obfuscate code. A major offensive strategy exploits steganography to conceal scripts or URLs, which can be used to steal credentials or retrieve additional payloads. A recent example is the attack campaign against the Magento e-commerce platform, where a web skimmer has been cloaked in favicons to steal payment information of users. In this paper, we propose an approach based on deep learning for detecting threats using least significant bit steganography to conceal malicious PHP scripts and URLs in favicons. Experimental results, conducted on a realistic dataset with both legitimate and compromised images, demonstrated the effectiveness of our solution. Specifically, our model detects ~100% of the compromised favicons when examples of various malicious payloads are provided in the learning phase. Instead, it achieves an overall accuracy of ~90% when in the presence of new or obfuscated payloads.
Tipologia CRIS:
04.01 Contributo in Atti di convegno
Keywords:
information hiding; stegomalware; Ai; malware; cyber security; machine learning
Elenco autori:
Zuppelli, Marco; Manco, Giuseppe; Caviglione, Luca; Guarascio, Massimo; Cassavia, Nunziato
Autori di Ateneo:
CAVIGLIONE LUCA
GUARASCIO MASSIMO
MANCO GIUSEPPE
ZUPPELLI MARCO
Link alla scheda completa:
https://iris.cnr.it/handle/20.500.14243/448656
  • Dati Generali

Dati Generali

URL

https://dl.acm.org/doi/abs/10.1145/3538969.3544437
  • Utilizzo dei cookie

Realizzato con VIVO | Designed by Cineca | 26.5.0.0 | Sorgente dati: PREPROD (Ribaltamento disabilitato)