Explainable Malware Detection Using Predefined Network Flow

被引:0
|
作者
Hsupeng, Boryau [1 ]
Lee, Kun-Wei [1 ]
Wei, Te-En [1 ]
Wang, Shih-Hao [1 ]
机构
[1] Inst Informat Ind, Cybersecur Technol Inst, Taipei, Taiwan
关键词
Explainable AI; Cybersecurity; XGBoost; Malware Classification; SHAP;
D O I
暂无
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
As the internet has become an indispensable part of modern life, defences against cybersecurity attacks have become an important topic and a considerable number of studies have been made to provide reliable tactics to defend against cyberattacks. Flow export protocols and technologies provide several advantages in network monitoring. By using flow data aggregated from packets, the amount of data to be analysed has been significantly reduced and it is often said to be more scalable than packet-based traffic analysis. With the help of modern Artificial Intelligent algorithms, AI can be trained with flow data to predict hackers' attacks and types of malware. In this paper, we will present CSTITool, a CICFlowMeter-based flow extraction tool, to feature extraction with an aim of improving the model performance. The flow features will be used to train a machine learning-based model for hackers' attacks and malware classification. To provide interpretability, an explainable AI will be introduced to help understand the relation between the prediction and the features.
引用
收藏
页码:27 / +
页数:7
相关论文
共 50 条
  • [1] TrafficAV: An Effective and Explainable Detection of Mobile Malware Behavior Using Network Traffic
    Wang, Shanshan
    Chen, Zhenxiang
    Zhang, Lei
    Yan, Qiben
    Yang, Bo
    Peng, Lizhi
    Jia, Zhongtian
    2016 IEEE/ACM 24TH INTERNATIONAL SYMPOSIUM ON QUALITY OF SERVICE (IWQOS), 2016,
  • [2] Flow-based Malware Detection Using Convolutional Neural Network
    Yeo, M.
    Koo, Y.
    Yoon, Y.
    Hwang, T.
    Ryu, J.
    Song, J.
    Park, C.
    2018 32ND INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING (ICOIN), 2018, : 910 - 913
  • [3] High-precision malware detection in android apps using quantum explainable hierarchical interaction network
    Muthusamy, Ramnath
    Charles, Yesubai Rubavathi
    KNOWLEDGE-BASED SYSTEMS, 2025, 310
  • [4] Effective detection of mobile malware behavior based on explainable deep neural network
    Yan, Anli
    Chen, Zhenxiang
    Zhang, Haibo
    Peng, Lizhi
    Yan, Qiben
    Hassan, Muhammad Umair
    Zhao, Chuan
    Yang, Bo
    NEUROCOMPUTING, 2021, 453 : 482 - 492
  • [5] Hardware-Assisted Malware Detection using Explainable Machine Learning
    Pan, Zhixin
    Sheldon, Jennifer
    Mishra, Prabhat
    2020 IEEE 38TH INTERNATIONAL CONFERENCE ON COMPUTER DESIGN (ICCD 2020), 2020, : 663 - 666
  • [6] Advancing Malware Detection using Memory Analysis and Explainable AI Approach
    Ch, Ravikumar
    Manoranjini, J.
    Pallavi, S.
    Naresh, Usikela
    Telang, Shilpa
    Kiran, Saggurthi
    2024 SECOND INTERNATIONAL CONFERENCE ON INTELLIGENT CYBER PHYSICAL SYSTEMS AND INTERNET OF THINGS, ICOICI 2024, 2024, : 518 - 523
  • [7] MalPhase: Fine-Grained Malware Detection Using Network Flow Data
    Piskozub, Michal
    De Gaspari, Fabio
    Barr-Smith, Frederick
    Mancini, Luigi
    Martinovic, Ivan
    ASIA CCS'21: PROCEEDINGS OF THE 2021 ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2021, : 774 - 786
  • [8] Towards Explainable CNNs for Android Malware Detection
    Kinkead, Martin
    Millar, Stuart
    McLaughlin, Niall
    O'Kane, Philip
    12TH INTERNATIONAL CONFERENCE ON AMBIENT SYSTEMS, NETWORKS AND TECHNOLOGIES (ANT) / THE 4TH INTERNATIONAL CONFERENCE ON EMERGING DATA AND INDUSTRY 4.0 (EDI40) / AFFILIATED WORKSHOPS, 2021, 184 : 959 - 965
  • [9] Hardware-Assisted Malware Detection and Localization Using Explainable Machine Learning
    Pan, Zhixin
    Sheldon, Jennifer
    Mishra, Prabhat
    IEEE TRANSACTIONS ON COMPUTERS, 2022, 71 (12) : 3308 - 3321
  • [10] HyDroid: android malware detection using network flow combined with permissions and intent filter
    Boukhamla, Akram Zine Eddine
    Verma, Abhishek
    INTERNATIONAL JOURNAL OF MOBILE COMMUNICATIONS, 2023, 22 (01) : 70 - 91