Home > Articles > New malware classifying ways

New malware classifying ways

September 20th, 2007

Today’s malicious classification system is basically focused on the technical way the software works. However, for most users’ it a language of birds and the more important factor in this classification for them is how they try to steal their money.

People who work with security software does understand that today’s classification is useful only for industry professionals therefore they are working on the one that would be helpful for users. This subject will be discussed on the conference in Vienna, there participants are going to present their new malware classifying systems.

To make the purpose of this new qualification clear lets take an example: the term virus. Today’s definition of virus is: it is a piece of software that replicates or makes copies of itself and attaches itself to other pieces of software.

Such term “virus” definition is surely suitable for security software professionals. But for most users’ is would only mean that something is wrong with their computer. Moreover, virus is one of the simplest terms. It would probably take hours for common users to find out what more complicated terms such as the “Trojan horse”, “dialer” or “adware” means and how it harms the system. 

According to infoworld.com, although malware categorization system exist, a new one is necessary because of the focus on economic crimes. The “business” models behind the malware are far easier to define than the infinite technical variations that the malware can take.

The suggested categorizing system would take into account such factors as: how a threat is installed, its economic purpose, how it exploits a host computer and how it hides itself from detection.

One more metric in this new system should be the persistence of threats. Infoworld.com stated that antivirus industry has tended to focus on “top 10” lists, which indicate the most frequent recent threats but not the most successful attacks over time. Adding this new metric in classification system would make the scope of an ongoing fraud frame more accurate.

Although benefits of this new malware classification is obvious for users’ not all industry professionals agree that such great changes need to be done.

Articles

  1. No comments yet.
  1. No trackbacks yet.