Özet
Malware continues to evolve rapidly, exploiting techniques such as obfuscation, encryption and polymorphism to evade traditional cybersecurity mechanisms. However, the outputs of such analysis are often complex and voluminous records, requiring deep expertise and significant a mounts of time to interpret effectively. Manual review of these records is inefficient and prone to human error, especially in time-critical contexts such as threat mitigation and incident response. To address this challenge, we introduce an AI-powered malware analysis framework that uses a Retrieval-Augmented Generation (RAG) strategy to interpret CAPEv2 analysis results. Our solution automatically extracts key information by integrating Large Language Models (LLMs) with behavioral logs, generates human-readable summaries, and facilitates analyst interaction through a web-based interface. The main contribution of our work is the automation of the end-to-end dynamic analysis pipeline, from running malware in a sandboxing environment to log interpretation and report generation. The developed framework provides key functionalities, including real-time log processing, context generation, and automatic report generation with generative AI models through a user-friendly web interface. Our evaluation shows a significant i mprovement in analysis time, with average task times reduced by more than 5x compared to manual review.
| Orijinal dil | İngilizce |
|---|---|
| Sayfa (başlangıç-bitiş) | 1147-1152 |
| Sayfa sayısı | 6 |
| Dergi | International Conference on Computer Science and Engineering, UBMK |
| Basın numarası | 2025 |
| DOI'lar | |
| Yayın durumu | Yayınlandı - 2025 |
| Harici olarak yayınlandı | Evet |
| Etkinlik | 10th International Conference on Computer Science and Engineering, UBMK 2025 - Istanbul, Türkiye Süre: 17 Eyl 2025 → 21 Eyl 2025 |
Bibliyografik not
Publisher Copyright:© 2025 IEEE.
Parmak izi
Dynamic Ransomware Analysis using CAPEv2 and Retrieval-Augmented Generation' araştırma başlıklarına git. Birlikte benzersiz bir parmak izi oluştururlar.Alıntı Yap
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver