![]() ![]() While an artifact by itself might not be enough to make a decision, the collection of artifacts can help us determine a practical outcome for this step. The initial analysis process entails reviewing different artifacts of a file. The purpose of initial analysis is to gather as many insights about a file as possible without spending too much time on advanced analysis techniques such as behavioral analysis. In this article we will pursue ELF file analysis with an emphasis on static analysis. We discussed the current lack of ELF malware visibility, reflected in subpar detection rates by leading engines and the shortage of publicly available resources documenting Linux threats. In the previous article we profiled the ELF malware landscape and explained how malware infects systems.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. Archives
June 2023
Categories |