Comprehensive Analysis of Consistency and Robustness of Machine Learning Models in Malware Detection

被引:0
|
作者
Kasarapu, Sreenitha [1 ]
Bhusal, Dipkamal [2 ]
Rastogi, Nidhi [2 ]
Dinakarrao, Sai Manoj Pudukotai [1 ]
机构
[1] George Mason Univ, Fairfax, VA 22030 USA
[2] Rochester Inst Technol, Rochester, NY 14623 USA
关键词
D O I
10.1145/3649476.3658725
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Cybersecurity in recent years has gained significant attention, especially with the deployment of millions of devices across the globe and increased threats targeted toward embedded systems. Many cyber threats have been detected and emerged in the last few years. Among multiple threats, malware attacks are considered to be prominent due to the impact on users and systems. Considering the evolving trend of such cyber threats, traditional statistical and heuristic threat detection approaches have observed the need to be more effective and efficient. Machine learning (ML)-based cyber-threat detection has been actively researched and adopted across academia and industry to address the challenges of evolving cyber threats. However, ML-based neural network techniques though efficient, are considered black boxes due to the lack of sufficient information that can be used to deduce their functionality. On the other hand, the interpretable and explainable AI/ML field focuses on the explainability and reason for the decisions performed by the ML models. In this paper, we experiment with different explainable AI (XAI) techniques for interpreting multiple malware detection models. Specifically, we analyze the consistency and reliability of these neural network models in determining an attack and benign functions. We provide quantitative analysis of multiple explanation methods across different datasets. When trained with the top feature attributes (10%-35% of whole data) generated by XAI methods, the ML classifiers (trained on High Performance Counters and Mimicus PDF malware datasets) retain a malware detection accuracy of 88%-92%. The ML classifiers are also compared with state-of-the-art models and the proposed technique (training with partial data features generated by explainable methods) produce comparable malware detection accuracy above 82%.
引用
收藏
页码:477 / 482
页数:6
相关论文
共 50 条
  • [31] Automated System-Level Malware Detection Using Machine Learning: A Comprehensive Review
    Gyamfi, Nana Kwame
    Goranin, Nikolaj
    Ceponis, Dainius
    Cenys, Antanas
    APPLIED SCIENCES-BASEL, 2023, 13 (21):
  • [32] A Comparison of Machine and Deep Learning Models for Detection and Classification of Android Malware Traffic
    Bovenzi, Giampaolo
    Cerasuolo, Francesco
    Montieri, Antonio
    Nascita, Alfredo
    Persico, Valerio
    Pescape, Antonio
    2022 27TH IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (IEEE ISCC 2022), 2022,
  • [33] Machine learning based hybrid behavior models for Android malware analysis
    Chuang, Hsin-Yu
    Wang, Sheng-De
    2015 IEEE INTERNATIONAL CONFERENCE ON SOFTWARE SECURITY AND RELIABILITY (QRS 2015), 2015, : 201 - 206
  • [34] Adversarial Robustness of Image Based Android Malware Detection Models
    Rathore, Hemant
    Bandwala, Taeeb
    Sahay, Sanjay K.
    Sewak, Mohit
    SECURE KNOWLEDGE MANAGEMENT IN THE ARTIFICIAL INTELLIGENCE ERA, 2022, 1549 : 3 - 22
  • [35] PDF Malware Detection: Toward Machine Learning Modeling With Explainability Analysis
    Hossain, G. M. Sakhawat
    Deb, Kaushik
    Janicke, Helge
    Sarker, Iqbal H.
    IEEE ACCESS, 2024, 12 : 13833 - 13859
  • [36] Android Malware Detection Using Hybrid Analysis and Machine Learning Technique
    Yang, Fan
    Zhuang, Yi
    Wang, Jun
    CLOUD COMPUTING AND SECURITY, PT II, 2017, 10603 : 565 - 575
  • [37] A Machine-Learning-Based Framework for Supporting Malware Detection and Analysis
    Cuzzocrea, Alfredo
    Mercaldo, Francesco
    Martinelli, Fabio
    COMPUTATIONAL SCIENCE AND ITS APPLICATIONS, ICCSA 2021, PT III, 2021, 12951 : 353 - 365
  • [38] Machine Learning Analysis of Memory Images for Process Characterization and Malware Detection
    Lyles, Seth
    Desantis, Mark
    Donaldson, John
    Gallegos, Micaela
    Nyholm, Hannah
    Taylor, Claire
    Monteith, Kristine
    52ND ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS WORKSHOP VOLUME (DSN-W 2022), 2022, : 162 - 169
  • [39] An Experimental Analysis on Malware Detection in Executable Files using Machine Learning
    Sharma, Anurag
    Mohanty, Suman
    Islam, Md Ruhul
    2021 8TH INTERNATIONAL CONFERENCE ON SMART COMPUTING AND COMMUNICATIONS (ICSCC), 2021, : 178 - 182
  • [40] ANALYSIS OF FEATURES SELECTION AND MACHINE LEARNING CLASSIFIER IN ANDROID MALWARE DETECTION
    Mas'ud, Mohd Zaki
    Sahib, Shahrin
    Abdollah, Mohd Faizal
    Selamat, Siti Rahayu
    Yusof, Robiah
    2014 INTERNATIONAL CONFERENCE ON INFORMATION SCIENCE AND APPLICATIONS (ICISA), 2014,