Differential Effects of Prior Experience on the Malware Resolution Process
نویسندگان
چکیده
Despite growing interest in the economic and policy aspects of information security, little academic research has used field data to examine the development process of a security countermeasure provider. In this paper, we empirically examine the learning process a security software developer undergoes in resolving a malware problem. Using the data collected from a leading antivirus software company in Asia, we study the differential effects of experience on the malware resolution process. Our findings reveal that general knowledge from cross-family experience has greater impact than specific knowledge from within-family experience on performance in the malware resolution process. We also examine the factors that drive the differential effects of prior experience. Interestingly, our data show that cross-family experience is more effective than within-family experience in malware resolution when malware targets the general public than when a specific victim is targeted. Similar results—for example, the higher (lower) effect of cross-family (within-family) experience—were observed in the presence of information sharing among software vendors or during a disruption caused by a catastrophe. Our study contributes to a better understanding of the specific expertise required for security countermeasure providers to be able to respond under varying conditions to fast-evolving malware.
منابع مشابه
Image Zooming using Non-linear Partial Differential Equation
The main issue in any image zooming techniques is to preserve the structure of the zoomed image. The zoomed image may suffer from the discontinuities in the soft regions and edges; it may contain artifacts, such as image blurring and blocky, and staircase effects. This paper presents a novel image zooming technique using Partial Differential Equations (PDEs). It combines a non-linear Fourth-ord...
متن کاملEffects of Pretreatment Prior to Electroless Ni-P Plating on Fatigue Behavior of SAE 1045 Steel
Electroless Ni-P (EN) plating, as an important group of metallic coatings, employed in a wide range of industrial applications. The current work aims to investigate the effects of pretreatment process before EN plating on fatigue behavior of SAE 1045 steel. The specimens of rotating bending fatigue test were prepared from the steel in two series. A group of samples used in as-polished con...
متن کاملDyVSoR: dynamic malware detection based on extracting patterns from value sets of registers
To control the exponential growth of malware files, security analysts pursue dynamic approaches that automatically identify and analyze malicious software samples. Obfuscation and polymorphism employed by malwares make it difficult for signature-based systems to detect sophisticated malware files. The dynamic analysis or run-time behavior provides a better technique to identify the threat. In t...
متن کاملL2 Learners' Vocabulary Learning: Differential Effect(s) of Comprehension-Based vs. Production-Based Proactive/Reactive Focus on Form
This study aims to compare the effects of four types of FFI on second language vocabulary learning. To do so, the study adopted a quasi-experimental pretest-posttest design, including five groups, each receiving a distinct treatment. The participants were 80 fourth-grade male students ranging in age from 17 to 19. Before the treatment phase, the participants took a researcher-made test of vocab...
متن کاملEureka: A Framework for Enabling Static Malware Analysis
We introduce Eureka, a framework for enabling static analysis on Internet malware binaries. Eureka incorporates a novel binary unpacking strategy based on statistical bigram analysis and coarse-grained execution tracing. The Eureka framework uniquely distinguishes itself from prior work by providing effective evaluation metrics and techniques to assess the quality of the produced unpacked code....
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید
ثبت ناماگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید
ورودعنوان ژورنال:
- MIS Quarterly
دوره 38 شماره
صفحات -
تاریخ انتشار 2014