Browse Definitions :
Definition

malware testing

Malware testing is the practice of subjecting malicious programs to software testing tools and antivirus programs designed for legitimate applications. 

Malicious software developers want their products to meet a lot of the same requirements that other software should meet. It's not desirable, for example, for either type of program to crash user computers or applications. 

In the case of regular software, causing crashes indicates that the software is not functional. If malware crashes user systems, on the other hand, the larger concern is that the cause of the crash will be detected, eradicated and reported. Running smoothly without causing problems is generally the ideal for malware as much as it is for any software because anything that causes problems is likely to be investigated.

Brandon Dixon, an independent researcher, reported that two high-profile nation state hacking teams were using Google's VirusTotal website to improve their malware. VirusTotal is a free service that allows any user to submit a program for testing. The site aggregates over three dozen antivirus scanners from Symantec, Kaspersky Lab, F-Secure and others. Dixon had been tracking submissions to the site for some time. 

To test their malware, the hacking teams repeatedly submitted programs to the site attempting to ensure they can evade detection by antivirus software. When a program failed to get through antivirus, they would tweak the code and resubmit until the malware was able to pass undetected. 

This was last updated in September 2014

Continue Reading About malware testing

SearchCompliance
  • compliance risk

    Compliance risk is an organization's potential exposure to legal penalties, financial forfeiture and material loss, resulting ...

  • information governance

    Information governance is a holistic approach to managing corporate information by implementing processes, roles, controls and ...

  • enterprise document management (EDM)

    Enterprise document management (EDM) is a strategy for overseeing an organization's paper and electronic documents so they can be...

SearchSecurity
  • session key

    A session key is an encryption and decryption key that is randomly generated to ensure the security of a communications session ...

  • computer forensics (cyber forensics)

    Computer forensics is the application of investigation and analysis techniques to gather and preserve evidence from a particular ...

  • multifactor authentication (MFA)

    Multifactor authentication (MFA) is a security technology that requires more than one method of authentication from independent ...

SearchHealthIT
SearchDisasterRecovery
  • risk mitigation

    Risk mitigation is a strategy to prepare for and lessen the effects of threats faced by a business.

  • call tree

    A call tree is a layered hierarchical communication model that is used to notify specific individuals of an event and coordinate ...

  • Disaster Recovery as a Service (DRaaS)

    Disaster recovery as a service (DRaaS) is the replication and hosting of physical or virtual servers by a third party to provide ...

SearchStorage
  • cloud storage

    Cloud storage is a service model in which data is transmitted and stored on remote storage systems, where it is maintained, ...

  • cloud testing

    Cloud testing is the process of using the cloud computing resources of a third-party service provider to test software ...

  • storage virtualization

    Storage virtualization is the pooling of physical storage from multiple storage devices into what appears to be a single storage ...

Close