arrow
Return

DeepTrust: Multi-step classification through dissimilar adversarial representations for robust android malware detection

delete2026-09-29
delete0
PRE
AI
P
Pulido-Cortazar, Daniel
D
Daniel Gibert *
F
Felip Manyà
DOI:10.1016/j.eswa.2026.132961delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Over the last decade, machine learning has been extensively applied to identify malicious Android applications. However, such approaches remain vulnerable against adversarial examples, i.e., examples that are subtly manipulated to fool a machine learning model into making incorrect predictions. This research presents DeepTrust, a novel metaheuristic that arranges flexible classifiers, like deep neural networks, into an ordered sequence where the final decision is made by a single internal model based on conditions activated in cascade. In the Robust Android Malware Detection competition at the 2025 IEEE Conference SaTML, DeepTrust secured the first place and achieved state-of-the-art results, outperforming the next-best competitor by up to 266% under feature-space evasion attacks. This is accomplished while maintaining the highest detection rate on non-adversarial malware and a false positive rate below 1%. The method's efficacy stems from inducing divergent representations among the internal models under different robustness-oriented learning schemes. This frustrates the iterative perturbation process inherent to evasion attacks, enhancing system robustness without compromising accuracy on clean examples.
Keywords:
Malware detection
Android
Machine learning
Deep learning
Adversarial machine learning

Journal

Expert Systems with Applications cover
Expert Systems with Applications
IF:
7.5
Papers:
3.0W
Citations:
10.2W

Organization

C
consejo superior de investigaciones científicas
Scholars:
780
Papers: 313
Citations: 0
Cited Papers

Cited Papers

No cited papers available