Robustness Analysis of CNN-based Malware Family Classification Methods against Various Adversarial Attacks

被引:1
|
作者
Choi, Seok-Hwan [1 ]
Shin, Jin-Myeong [1 ]
Liu, Peng [2 ]
Choi, Yoon-Ho [1 ]
机构
[1] Pusan Natl Univ, Busan, South Korea
[2] Penn State Univ, University Pk, PA 16802 USA
基金
新加坡国家研究基金会;
关键词
adversarial example; malware family classification; convolutional neural networks;
D O I
10.1109/cns.2019.8802809
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
As malware family classification methods, image-based classification methods have attracted much attention. Especially, due to the fast classification speed and the high classification accuracy, Convolutional Neural Network (CNN)-based malware family classification methods have been studied. However, previous studies on CNN-based classification methods focused only on improving the classification accuracy of malware families. That is, previous studies did not consider the cases that the accuracy of CNN-based malware classification methods can be decreased under the existence of adversarial attacks. In this paper, we analyze the robustness of various CNN-based malware family classification models under adversarial attacks. While adding imperceptible non-random perturbations to the input image, we measured how the accuracy of the CNN-based malware family classification model can be affected. Also, we showed the influence of three significant visualization parameters(i.e., the size of input image, dimension of input image, and conversion color of a special character) on the accuracy variation under adversarial attacks. From the evaluation results using the Microsoft malware dataset, we showed that even the accuracy over 98% of the CNN-based malware family classification method can be decreased to less than 7%.
引用
收藏
页数:6
相关论文
共 50 条
  • [21] Defending malware detection models against evasion based adversarial attacks
    Rathore, Hemant
    Sasan, Animesh
    Sahay, Sanjay K.
    Sewak, Mohit
    PATTERN RECOGNITION LETTERS, 2022, 164 : 119 - 125
  • [22] Defending Hardware-Based Malware Detectors Against Adversarial Attacks
    Kuruvila, Abraham Peedikayil
    Kundu, Shamik
    Basu, Kanad
    IEEE TRANSACTIONS ON COMPUTER-AIDED DESIGN OF INTEGRATED CIRCUITS AND SYSTEMS, 2021, 40 (09) : 1727 - 1739
  • [23] Towards robust CNN-based malware classifiers using adversarial examples generated based on two saliency similarities
    Dazhi Zhan
    Yue Hu
    Weili Li
    Jun Chen
    Shize Guo
    Zhisong Pan
    Neural Computing and Applications, 2023, 35 : 17129 - 17146
  • [24] Towards robust CNN-based malware classifiers using adversarial examples generated based on two saliency similarities
    Zhan, Dazhi
    Hu, Yue
    Li, Weili
    Chen, Jun
    Guo, Shize
    Pan, Zhisong
    NEURAL COMPUTING & APPLICATIONS, 2023, 35 (23): : 17129 - 17146
  • [25] Evaluating Robustness Against Adversarial Attacks: A Representational Similarity Analysis Approach
    Liu, Chenyu
    2023 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS, IJCNN, 2023,
  • [26] MLP and CNN-based Classification of Points of Interest in Side-channel Attacks
    Hanwen Feng
    Weiguo Lin
    Wenqian Shang
    Jianxiang Cao
    Wei Huang
    International Journal of Networked and Distributed Computing, 2020, 8 : 108 - 117
  • [27] Gradient-Based Adversarial Attacks Against Malware Detection by Instruction Replacement
    Zhao, Jiapeng
    Liu, Zhongjin
    Zhang, Xiaoling
    Huang, Jintao
    Shi, Zhiqiang
    Lv, Shichao
    Li, Hong
    Sun, Limin
    WIRELESS ALGORITHMS, SYSTEMS, AND APPLICATIONS (WASA 2022), PT I, 2022, 13471 : 603 - 612
  • [28] Effectiveness of machine learning based android malware detectors against adversarial attacks
    Jyothish, A.
    Mathew, Ashik
    Vinod, P.
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2024, 27 (03): : 2549 - 2569
  • [29] Pixel-domain adversarial examples against CNN-based manipulation detectors
    Tondi, B.
    ELECTRONICS LETTERS, 2018, 54 (21) : 1220 - 1221
  • [30] MLP and CNN-based Classification of Points of Interest in Side-channel Attacks
    Feng, Hanwen
    Lin, Weiguo
    Shang, Wenqian
    Cao, Jianxiang
    Huang, Wei
    INTERNATIONAL JOURNAL OF NETWORKED AND DISTRIBUTED COMPUTING, 2020, 8 (02) : 108 - 117