File:Frantisek Strasak Detecting malware even when it is encrypted.pdf

Detecting malware even when it is encrypted - With the increasing amount of malware HTTPS traffic, it is a challenge to discover new features and methods to detect malware without decrypting the traffic. A detection method that does not need to unencrypt the traffic is cheaper (because no traffic interceptor is needed), faster and private, respecting the original idea of HTTPS. Our research goal is to detect malware HTTPS connections using data, that does not need to unencrypt the traffic.