Skip to main content

임을규 교수

Eul-Geol Im

한양대학교 컴퓨터소프트웨어학부 · 컴퓨터과학

연구실 소개

임을규 교수의 연구실은 악성코드 탐지 및 분석 기술에 초점을 맞추고 있으며, 특히 랜섬웨어, 패킹된 악성코드, 안드로이드 악성코드 등의 동적·정적 분석을 위한 혁신적인 시각화 기반 기법을 개발하고 있습니다. 특히 바이너리 파일을 이미지로 변환하고, 이를 바탕으로 유사도 기반 탐지 및 패킹 툴 식별 기술을 적용해 unknown 악성코드에 대한 실시간 대응 능력을 향상시키는 데 주력하고 있습니다. 또한 네트워크 기반의 웹 크롤러 탐지 및 악성 트래픽 탐지 기술을 통해 보안 위협을 다각도로 분석하고 있습니다.

악성코드 분석시각화 기반 탐지패킹 악성코드랜섬웨어 탐지네트워크 트래픽 분석

연구 현황

논문 수
166
총 인용 수
2,034
최근 5년 논문
13
주요 분야
컴퓨터과학

연구 성과 추이

표시된 성과는 수집된 데이터 기준으로 산출되며, 일부 차이가 있을 수 있습니다.

5개년 연도별 논문 게재 수
13총합
2022
2023
2024
2025
2026
5개년 연도별 피인용 수
8총합
20222023202420252026

주요 논문

15
1
논문|인용수 174·2014
Malware analysis using visualized images and entropy graphs
Kyoung Soo Han, Jae Hyun Lim, BooJoong Kang, Eul Gyu Im
SJR Q2International Journal of Information Security
Signal ProcessingComputer Science
2
논문|인용수 145·2019
Ransomware detection using machine learning algorithms
Seong Il Bae, Gyu Bin Lee, Eul Gyu Im
SJR Q2Concurrency and Computation Practice and Experience

Summary The number of ransomware variants has increased rapidly every year, and ransomware needs to be distinguished from the other types of malware to protect users' machines from ransomware‐based attacks. Ransomware is similar to other types of malware in some aspects, but other characteristics are clearly different. For example, ransomware generally conducts a large number of file‐related operations in a short period of time to lock or to encrypt files of a victim's machine. The signature‐bas

Signal ProcessingComputer Science
3
논문|인용수 78·2014
Malware Analysis Using Visualized Image Matrices
Kyoung-Soo Han, BooJoong Kang, Eul Gyu Im
SJR Q2The Scientific World JOURNALOA

This paper proposes a novel malware visual analysis method that contains not only a visualization method to convert binary files into images, but also a similarity calculation method between these images. The proposed method generates RGB-colored pixels on image matrices using the opcode sequences extracted from malware samples and calculates the similarities for the image matrices. Particularly, our proposed methods are available for packed malware samples by applying them to the execution trac

Signal ProcessingComputer Science
4
논문|인용수 34·2016
Binary executable file similarity calculation using function matching
TaeGuen Kim, Yeo Reum Lee, BooJoong Kang, Eul Gyu Im
SJR Q2The Journal of Supercomputing
Signal ProcessingComputer Science
5
book chapter|인용수 23·2011
Malware Classification Methods Using API Sequence Characteristics
Kyoung-Soo Han, In-Kyoung Kim, Eul Gyu Im
SJR Q4Lecture notes in electrical engineering
Signal ProcessingComputer Science
6
논문|인용수 18·2018
Packer identification method based on byte sequences
ByeongHo Jung, Seong Il Bae, Chang Choi, Eul Gyu Im
SJR Q2Concurrency and Computation Practice and Experience

Summary With the growing number of malware, malware analysis technologies need to be advanced continuously. Malware authors use various packing techniques to hide their code from malware detection tools and techniques. The packing techniques are generally used to compress and encrypt executable code in executable files, and the unpacking code is usually embedded in the executable files. Therefore, packed executable files can be executed by itself, and the information associated with packing can

Signal ProcessingComputer Science
7
논문|인용수 15·2014
Malware categorization using dynamic mnemonic frequency analysis with redundancy filtering
BooJoong Kang, Kyoung Soo Han, Byeong Ho Kang, Eul Gyu Im
Digital Investigation
Signal ProcessingComputer Science
8
논문|인용수 14·2018
Runtime Detection Framework for Android Malware
TaeGuen Kim, BooJoong Kang, Eul Gyu Im
Mobile Information SystemsOA

As the number of Android malware has been increased rapidly over the years, various malware detection methods have been proposed so far. Existing methods can be classified into two categories: static analysis-based methods and dynamic analysis-based methods. Both approaches have some limitations: static analysis-based methods are relatively easy to be avoided through transformation techniques such as junk instruction insertions, code reordering, and so on. However, dynamic analysis-based methods

Signal ProcessingComputer Science
9
book chapter|인용수 8·2005
An Adaptive Approach to Handle DoS Attack for Web Services
Eul Gyu Im, Yong Ho Song
SJR Q2Lecture notes in computer science
Computer Networks and CommunicationsComputer Science
10
book chapter|인용수 8·2011
Detection Methods for Malware Variant Using API Call Related Graphs
Kyoung-Soo Han, In-Kyoung Kim, Eul Gyu Im
SJR Q4Lecture notes in electrical engineering
Signal ProcessingComputer Science
11
논문|인용수 6·2018
Detection Method for Distributed Web-Crawlers: A Long-Tail Threshold Model
Inwoo Ro, Joong‐Soo Han, Eul Gyu Im
Security and Communication NetworksOA

This paper proposes an advanced countermeasure against distributed web-crawlers. We investigated other methods for crawler detection and analyzed how distributed crawlers can bypass these methods. Our method can detect distributed crawlers by focusing on the property that web traffic follows the power distribution. When we sort web pages by the number of requests, most of requests are concentrated on the most frequently requested web pages. In addition, there will be some web pages that normal u

Information SystemsComputer Science
12
book chapter|인용수 5·2011
A Survey on P2P Botnet Detection
Kyoung-Soo Han, Eul Gyu Im
SJR Q4Lecture notes in electrical engineering
Computer Networks and CommunicationsComputer Science
13
book chapter|인용수 2·2024
Multi-NetDroid: Multi-layer Perceptron Neural Network for Android Malware Detection
Andri Rai, Eul Gyu Im
SJR Q4Communications in computer and information science
Signal ProcessingComputer Science
14
book chapter|인용수 2·2006
Hybrid Modeling for Large-Scale Worm Propagation Simulations
Eul Gyu Im, Jung Taek Seo, Dongsoo Kim, Yong Ho Song, Yongsu Park
SJR Q2Lecture notes in computer science
Computer Networks and CommunicationsComputer Science
15
논문|인용수 2·2025
Image-Based Malicious Network Traffic Detection Framework: Data-Centric Approach
Doo-Seop Choi, Taeguen Kim, BooJoong Kang, Eul Gyu Im
SJR Q2Applied SciencesOA

With the advancement of network communication technology and Internet of Everything (IoE) technology, which connects all edge devices to the internet, the network traffic generated in various platform environments is rapidly increasing. The increase in network traffic makes it more difficult for the detection system to analyze and detect malicious network traffic generated by malware or intruders. Additionally, processing high-dimensional network traffic data requires substantial computational r

Computer Networks and CommunicationsComputer Science

대표 연구 분야

Signal ProcessingComputer Networks and CommunicationsInformation SystemsArtificial IntelligenceHardware and ArchitectureSoftware

임을규 교수의 연구를 Nubint에서 더 깊이 살펴보세요

이 연구실의 논문을 앱에서 열어 AI와 함께 읽고, 핵심을 요약하고, 내 글에 인용하세요.