elastic / ember

Elastic Malware Benchmark for Empowering Researchers
Other
905 stars 271 forks source link

How can one do dynamic malware analysis on this dataset ? #40

Open Koruis opened 4 years ago

Koruis commented 4 years ago

Hello, I am a beginner. I noticed ember is a malware dateset for static analysis. But someone published a paper on 35th Annual Computer Security Applications Conference. In that paper, they claimed that they did dynamic analysis on a subset of ember with Cuckoo Sandbox. I wonder if there is someway to do dynamic analysis on ember with Cuckoo Sandbox? I would appreciate it if you could give me an answer.

There is the paper: dl.acm.org/doi/10.1145/3359789.3359835 Free versions on arxiv: arxiv.org/abs/1910.11376

gxenos commented 4 years ago

The binaries are not available i think. Try using the sha256 of each sample to reverse search for the executable?

ahmedsharyo commented 3 years ago

you can use "virus share" for free samples