A Holistic Intelligent Cryptojacking Malware Detection System

被引:0
|
作者
Almurshid, Hadeel A. [1 ]
Almomani, Iman [1 ,2 ]
Khalifa, M. A. [1 ]
El-Shafai, Walid [1 ,3 ]
机构
[1] Prince Sultan Univ, Comp Sci Dept, Secur Engn Lab, Riyadh 11586, Saudi Arabia
[2] Univ Jordan, King Abdullah II Sch Informat Technol, Comp Sci Dept, Amman 11942, Jordan
[3] Menoufia Univ, Fac Elect Engn, Dept Elect & Elect Commun Engn, Menoufia 32952, Egypt
来源
IEEE ACCESS | 2024年 / 12卷
关键词
Malware; Bitcoin; Predictive models; Blockchains; Static analysis; Convolutional neural networks; Prediction algorithms; Heuristic algorithms; Feature extraction; Cryptocurrency; Deep learning; Cryptojacking; malware; blockchain; CNN; cryptocurrency; cryptomining; dataset; deep learning; host-based; web-based; predictive models; detection system; artificial intelligence; static analysis; dynamic analysis;
D O I
10.1109/ACCESS.2024.3488192
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Recent statistics indicate a continuous rise in cryptojacking malware. This malware covertly exploits users' device resources to mine cryptocurrencies, such as Bitcoin, without their knowledge or consent. Cryptocurrency mining involves participants competing to generate a unique hash, with successful miners earning cryptocurrency tokens as rewards. As the difficulty of mining new cryptocurrencies increases, greater computational power and resources are required. Unfortunately, the growing popularity of cryptocurrencies has led to a significant increase in cryptojacking malware. Compounding this issue is the lack of adequate, practical solutions to combat this threat. Current shortcomings include a limited number of related studies, particularly in host-based cryptojacking, a scarcity of recent research, reliance on small or outdated datasets, and a shallow understanding of the behavior and characteristics of cryptojacking malware. This paper aims to address these gaps by introducing a holistic, intelligent cryptojacking malware detection system that: 1) provides a detailed analysis of the lifecycle of both host-based and web-based cryptojacking malware; 2) conducts a critical comparison of existing solutions, highlighting their weaknesses; 3) applies deep static analysis to identify key indicators crucial for cryptojacking analysis; 4) executes thorough dynamic analysis to demonstrate the real-world impact of cryptojacking; 5) utilizes a new, large, and robust cryptojacking dataset (CJDS) with over 100,000 samples, where the details of constructing this dataset are provided, (f) develops vision-based predictive models using 23 convolutional neural network (CNN) algorithms, extensively evaluated with comprehensive metrics; and 6) integrates the best-performing model to bulid a highly efficient cryptojacking detection system with an accuracy of 99%. This research offers valuable insights into the characteristics and consequences of cryptojacking, paving the way for further advancements in cybersecurity. It aims to protect digital environments from unauthorized resource exploitation and enhance the security of cryptocurrency-based systems.
引用
收藏
页码:161417 / 161439
页数:23
相关论文
共 50 条
  • [1] SoK: Cryptojacking Malware
    Tekiner, Ege
    Acar, Abbas
    Uluagac, A. Selcuk
    Kirda, Engin
    Selcuk, Ali Aydin
    2021 IEEE EUROPEAN SYMPOSIUM ON SECURITY AND PRIVACY (EUROS&P 2021), 2021, : 120 - 139
  • [2] CloudIntell: An intelligent malware detection system
    Mirza, Qublai K. Ali
    Awan, Irfan
    Younas, Muhammad
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 86 : 1042 - 1053
  • [3] IMDS: Intelligent Malware Detection System
    Ye, Yanfang
    Wang, Dingding
    Li, Tao
    Ye, Dongyi
    KDD-2007 PROCEEDINGS OF THE THIRTEENTH ACM SIGKDD INTERNATIONAL CONFERENCE ON KNOWLEDGE DISCOVERY AND DATA MINING, 2007, : 1043 - 1047
  • [4] SoK: Cryptojacking malware
    Tekiner, Ege
    Acar, Abbas
    Uluagac, A. Selcuk
    Kirda, Engin
    Selcuk, Ali Aydin
    Proceedings - 2021 IEEE European Symposium on Security and Privacy, Euro S and P 2021, 2021, : 120 - 139
  • [5] The Dangerous Combo: Fileless Malware and Cryptojacking
    Varlioglu, Said
    Elsayed, Nelly
    Elsayed, Zag
    Ozer, Murat
    Conference Proceedings - IEEE SOUTHEASTCON, 2022, 2022-March : 125 - 132
  • [6] A deep learning approach for host-based cryptojacking malware detection
    Sanda, Olanrewaju
    Pavlidis, Michalis
    Polatidis, Nikolaos
    EVOLVING SYSTEMS, 2024, 15 (01) : 41 - 56
  • [7] A deep learning approach for host-based cryptojacking malware detection
    Olanrewaju Sanda
    Michalis Pavlidis
    Nikolaos Polatidis
    Evolving Systems, 2024, 15 : 41 - 56
  • [8] The Dangerous Combo: Fileless Malware and Cryptojacking
    Varlioglu, Said
    Elsayed, Nelly
    ElSayed, Zag
    Ozer, Murat
    SOUTHEASTCON 2022, 2022, : 125 - 132
  • [9] Make Evasion Harder: An Intelligent Android Malware Detection System
    Hou, Shifu
    Ye, Yanfang
    Song, Yangqiu
    Abdulhayoglu, Melih
    PROCEEDINGS OF THE TWENTY-SEVENTH INTERNATIONAL JOINT CONFERENCE ON ARTIFICIAL INTELLIGENCE, 2018, : 5279 - 5283
  • [10] Intelligent Approach for Android Malware Detection
    Abdulla, Shubair
    Altaher, Altyeb
    KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2015, 9 (08): : 2964 - 2983