arrow
返回

Instance attack: an explanation-based vulnerability analysis framework against DNNs for malware detection

delete2023-11-10
delete0
delete
OA
AI
R
Ruijin Sun
S
Shize Guo
C
Changyou Xing
Y
Yexin Duan
杨路明 封面图
杨路明 (Luming Yang)
X
Xi Guo *
Z
Zhisong Pan *
DOI:10.7717/peerj-cs.1591delete
delete原文链接
delete分享
delete收藏
查看原文
摘要

摘要

En 中文
Deep neural networks (DNNs) are increasingly being used in malware detection and their robustness has been widely discussed. Conventionally, the development of an adversarial example generation scheme for DNNs involves either detailed knowledge concerning the model (i.e., gradient-based methods) or a substantial quantity of data for training a surrogate model. However, under many real-world circumstances, neither of these resources is necessarily available. Our work introduces the concept of the instance-based attack, which is both interpretable and suitable for deployment in a black-box environment. In our approach, a specific binary instance and a malware classifier are utilized as input. By incorporating data augmentation strategies, sufficient data are generated to train a relatively simple and interpretable model. Our methodology involves providing explanations for the detection model, which entails displaying the weights assigned to different components of the specific binary. Through the analysis of these explanations, we discover that the data subsections have a significant impact on the identification of malware. In this study, a novel function preserving transformation algorithm designed specifically for data subsections is introduced. Our approach involves leveraging binary diversification techniques to neutralize the effects of the most heavily-weighted section, thus generating effective adversarial examples. Our algorithm can fool the DNNs in certain cases with a success rate of almost 100%. Instance attack exhibits superior performance compared to the state-of-the-art approach. Notably, our technique can be implemented in a black-box environment and the results can be verified utilizing domain knowledge. The model can help to improve the robustness of malware detectors.
Keyword:
Malware
Adversarial examples
DNN
Interpretable
AI总结

AI总结

对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。

期刊

PeerJ Computer Science 封面图
PeerJ Computer Science
IF:
2.5
论文数:
3.4K
被引数:
6.9K

机构

A
Army Engineering University of PLA
学者数:
5.0K
论文数: 3.7K
被引数: 5
N
national university of defense technology - china
学者数:
1.8W
论文数: 1.4W
被引数: 9
引用论文

引用论文

err
IF0
err
err0
PREAI
err
err分享
err收藏
Influence of smoking on the development of lung metastases from breast cancer
err1995-06-01
err0
errOAAI
errEdward F. Scanlon; Okhee Suh; Satya M. Murthy; Curtis Mettlin; Stephen E. Reid; K. Michael Cummings
err分享
err收藏
err分享
err收藏
Conversion of a Hydrido–Butenylcarbyne Complex to η2-Allene-Coordinated Complexes and Metallabenzenes
err2013-07-03
err0
PREAI
errJinxiang Chen; Chunhong Zhang; Tingwan Xie; Ting Bin Wen; Hong Zhang; Haiping Xia
err分享
err收藏
13C NMR investigation of carbon nanotubes and derivatives碳纳米管及其衍生物的13C NMR研究
err2001-08-01
err0
PREAI
errC. Goze Bac; P. Bernier; S. Latil; V. Jourdain; A. Rubio; S.H. Jhang; S.W. Lee; Y.W. Park; M. Holzinger; A. Hirsch
err分享
err收藏
Adversarial EXEmples: A Survey and Experimental Evaluation of Practical Attacks on Machine Learning for Windows Malware Detection
err2021-09-02
err75
errOAAI
errDemetrio, Luca; Coull, Scott E.; Biggio, Battista; Lagorio, Giovanni; Armando, Alessandro; Roli, Fabio
err分享
err收藏
没有更多内容