By providing deep control over the sample, it facilitates the extraction of features like API calls and network communication even when the malware attempts to remain dormant.
Each sample is typically run for up to 15 minutes to ensure complete behavioral observation, including long-term evasive techniques.
Peekaboo is used to generate labeled datasets for AI and machine learning training in cybersecurity.
It implements massive coverage against 97 systematically derived anti-analysis techniques, outperforming many contemporary tools in depth and precision. Use Cases in Security Research
The tool monitors malware at multiple levels, including instructions, APIs, and system calls.
Peekaboo intercepts routines and monitors the number of modules loaded, system calls made, and threads created to determine the sample's runtime behavior.