arrow
返回

Automated machine learning for deep learning based malware detection

delete2024-02-01
delete10
delete
OA
AI
A
Austin L. Brown
M
Maanak Gupta *
M
Mahmoud Abdelsalam
DOI:10.1016/j.cose.2023.103582delete
delete原文链接
delete分享
delete收藏
查看原文
摘要

摘要

En 中文
Deep learning (DL) has proven to be effective in detecting sophisticated malware that is constantly evolving. Even though deep learning has alleviated the feature engineering problem, finding the most optimal DL model's architecture and set of hyper-parameters, remains a challenge that requires domain expertise. In addition, many of the proposed state-of-the-art models are very complex and may not be the best fit for different datasets. A promising approach, known as Automated Machine Learning (AutoML), can reduce the domain expertise required to develop custom DL models by automating the ML pipeline key components, namely hyperparameter optimization and neural architecture search (NAS). AutoML reduces the amount of human trial-and-error involved in designing DL models, and in more recent implementations can find new model architectures with relatively low computational overhead.Research on the feasibility of using AutoML for malware detection is very limited. This work provides a comprehensive analysis and insights on using AutoML for both static and online malware detection. For static, our analysis is performed on two widely used malware datasets: SOREL-20M to demonstrate efficacy on large datasets; and EMBER-2018, a smaller dataset specifically curated to hinder the performance of machine learning models. In addition, we show the effects of tuning the NAS process parameters on finding a more optimal malware detection model on these static analysis datasets. Further, we also demonstrate that AutoML is performant in online malware detection scenarios using Convolutional Neural Networks (CNNs) for cloud IaaS. We compare an AutoML technique to six existing state-of-the-art CNNs using a newly generated online malware dataset with and without other applications running in the background during malware execution. We show that the AutoML technique is more performant than the state-of-the-art CNNs with little overhead in finding the architecture. In general, our experimental results show that the performance of AutoML based static and online malware detection models are on par or even better than state-of-the-art models or hand-designed models presented in literature.
Keyword:
Malware detection
Automated machine learning
Deep learning
Cloud security
Static malware analysis
Online malware analysis
AI总结

AI总结

对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。

期刊

C
Computers and Security
IF:
5.4
论文数:
4.6K
被引数:
1.4W

机构

T
Tennessee Technological University
学者数:
1.0K
论文数: 911
被引数: 608
M
manhattan university
学者数:
330
论文数: 320
被引数: 0
引用论文

引用论文

Spectroscopic Imaging of Quasiparticle Bound States Induced by Strong Nonmagnetic Scatterings in One-Unit-Cell FeSe/SrTiO3
err2019-07-15
err0
PREAI
errChaofei Liu; Ziqiao Wang; Yi Gao; Xiaoqiang Liu; Yi Liu; Qiang-Hua Wang; Jian Wang
err分享
err收藏
Robust Intelligent Malware Detection Using Deep Learning基于深度学习的强大智能恶意软件检测
err2019-01-01
err245
errOAAI
errVinayakumar, R.; Alazab, Mamoun; Soman, K. P.; Poornachandran, Prabaharan; Venkatraman, Sitalakshmi
err分享
err收藏
A set of robust fluorescent peptide probes for quantification of Cu(ii) binding affinities in the micromolar to femtomolar range
err2015-01-01
err0
errOAAI
errTessa R. Young; Chathuri J. K. Wijekoon; Benjamin Spyrou; Paul S. Donnelly; Anthony G. Wedd; Zhiguang Xiao
err分享
err收藏
err分享
err收藏
Recurrent neural network for detecting malware
err2020-12-01
err51
PREAI
errJha, Sudan; Prashar, Deepak; Hoang Viet Long; Taniar, David
err分享
err收藏
err分享
err收藏
学者 查看更多内容