Paper 2015/728

Provable Virus Detection: Using the Uncertainty Principle to Protect Against Malware

Richard J. Lipton, Rafail Ostrovsky, and Vassilis Zikas


Protecting software from malware injection is the holy grail of modern computer security. Despite intensive efforts by the scientific and engineering community, the number of successful attacks continues to increase. We have a breakthrough novel approach to provably detect malware injection. The key idea is to use the very insertion of the malware itself to allow for the systems to detect it. This is, in our opinion, close in spirit to the famous Heisenberg Uncertainty Principle. The attackers, no matter how clever, no matter when or how they insert their malware, change the state of the system they are attacking. This fundamental idea is a game changer. And our system does not rely on heuristics; instead, our scheme enjoys the unique property that it is proved secure in a formal and precise mathematical sense and with minimal and realistic CPU modification achieves strong provable security guarantees. Thus, we anticipate our system and formal mathematical security treatment to open new directions in software protection.

Available format(s)
Publication info
Malware DetectionProvable SecurityAttestation
Contact author(s)
vassilis zikas @ gmail com
2015-07-21: received
Short URL
Creative Commons Attribution


      author = {Richard J.  Lipton and Rafail Ostrovsky and Vassilis Zikas},
      title = {Provable Virus Detection: Using the Uncertainty Principle to Protect Against Malware},
      howpublished = {Cryptology ePrint Archive, Paper 2015/728},
      year = {2015},
      note = {\url{}},
      url = {}
Note: In order to protect the privacy of readers, does not use cookies or embedded third party content.