Detecting Threats, Not Sandboxes

In this presentation, the authors discuss detecting threats and characterizing network environment to improve Malware Classification.

Software Engineering Institute



The speakers discuss the necessity of understanding and accounting for the biases present in different environments. The data in this presentation was collected with Joy, a package for capturing and analyzing network flow data and intraflow data, for network research, forensics, and security monitoring.

