Jordan123234/malware-families-catalog
收藏资源简介:
恶意软件家族目录是一个包含2,899个真实世界恶意软件家族的数据集,这些家族提取自EMBER 2018基准,并为安全团队、SOC分析师和事件响应进行了分类。数据集总计包含2,899个家族,其中245个已分类(经过人工整理),2,654个未分类(长尾部分)。类别共有19种,如特洛伊木马、银行木马、勒索软件等。数据来源于EMBER 2018 v2(Elastic恶意软件基准),采用Parquet格式(附带JSONL镜像),每个记录代表一个恶意软件家族,包含家族名称、样本数量、类别、描述和事件响应指导等字段。该目录旨在帮助安全运营中心分析师构建或调整检测规则,威胁情报团队生成报告,机器学习研究人员训练恶意软件分类器,以及事件响应人员快速分类和处理感染事件。
The Malware Family Catalog is a dataset comprising 2,899 real-world malware families extracted from the EMBER 2018 benchmark, which has been categorized for security teams, SOC analysts, and incident responders. The dataset totals 2,899 families, among which 245 are manually curated and categorized, while the remaining 2,654 remain uncategorized (long-tail segment). There are 19 categories in total, including Trojan, banking Trojan, ransomware, and others. The dataset is sourced from EMBER 2018 v2 (Elastic Malware Benchmark), and is provided in Parquet format with a JSONL mirror. Each record represents a malware family, containing fields such as family name, sample count, category, description, and incident response guidance. This catalog aims to assist SOC analysts in developing or tuning detection rules, threat intelligence teams in generating reports, machine learning researchers in training malware classifiers, and incident responders in rapidly classifying and handling infection incidents.




