Explainable Malware Detection Using Predefined Network Flow

被引:0
|
作者
Hsupeng, Boryau [1 ]
Lee, Kun-Wei [1 ]
Wei, Te-En [1 ]
Wang, Shih-Hao [1 ]
机构
[1] Inst Informat Ind, Cybersecur Technol Inst, Taipei, Taiwan
关键词
Explainable AI; Cybersecurity; XGBoost; Malware Classification; SHAP;
D O I
暂无
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
As the internet has become an indispensable part of modern life, defences against cybersecurity attacks have become an important topic and a considerable number of studies have been made to provide reliable tactics to defend against cyberattacks. Flow export protocols and technologies provide several advantages in network monitoring. By using flow data aggregated from packets, the amount of data to be analysed has been significantly reduced and it is often said to be more scalable than packet-based traffic analysis. With the help of modern Artificial Intelligent algorithms, AI can be trained with flow data to predict hackers' attacks and types of malware. In this paper, we will present CSTITool, a CICFlowMeter-based flow extraction tool, to feature extraction with an aim of improving the model performance. The flow features will be used to train a machine learning-based model for hackers' attacks and malware classification. To provide interpretability, an explainable AI will be introduced to help understand the relation between the prediction and the features.
引用
收藏
页码:27 / +
页数:7
相关论文
共 50 条
  • [21] Malware Detection with Neural Network Using Combined Features
    Zhou, Huan
    CYBER SECURITY, CNCERT 2018, 2019, 970 : 96 - 106
  • [22] Malware Detection Using Dual Siamese Network Model
    An, Byeongyeol
    Yang, Jeahyuk
    Kim, Seoyeon
    Kim, Taeguen
    CMES-COMPUTER MODELING IN ENGINEERING & SCIENCES, 2024, 141 (01): : 563 - 584
  • [23] Robust Malware Detection using Residual Attention Network
    Ganesan, Shamika
    Ravi, Vinayakumar
    Krichen, Moez
    Sowmya, V
    Alroobaea, Roobaea
    Soman, K. P.
    2021 IEEE INTERNATIONAL CONFERENCE ON CONSUMER ELECTRONICS (ICCE), 2021,
  • [24] Malware Detection and Classification in IoT Network using ANN
    Jamal, Ayesha
    Hayat, Muhammad Faisal
    Nasir, Muhammad
    MEHRAN UNIVERSITY RESEARCH JOURNAL OF ENGINEERING AND TECHNOLOGY, 2022, 41 (01) : 80 - 91
  • [25] RADAR: A TTP-based Extensible, Explainable, and Effective System for Network Traffic Analysis and Malware Detection
    Sharma, Yashovardhan
    Birnbach, Simon
    Martinovic, Ivan
    PROCEEDINGS OF THE 2023 EUROPEAN INTERDISCIPLINARY CYBERSECURITY CONFERENCE, EICC 2023, 2023, : 159 - 166
  • [26] Malware detection and classification using community detection and social network analysis
    Varshini Reddy
    Naimisha Kolli
    N. Balakrishnan
    Journal of Computer Virology and Hacking Techniques, 2021, 17 : 333 - 346
  • [27] Malware detection and classification using community detection and social network analysis
    Reddy, Varshini
    Kolli, Naimisha
    Balakrishnan, N.
    JOURNAL OF COMPUTER VIROLOGY AND HACKING TECHNIQUES, 2021, 17 (04) : 333 - 346
  • [28] Drebin: Effective and Explainable Detection of Android Malware in Your Pocket
    Arp, Daniel
    Spreitzenbarth, Michael
    Huebner, Malte
    Gascon, Hugo
    Rieck, Konrad
    21ST ANNUAL NETWORK AND DISTRIBUTED SYSTEM SECURITY SYMPOSIUM (NDSS 2014), 2014,
  • [29] MulAV: Multilevel and Explainable Detection of Android Malware with Data Fusion
    Li, Qun
    Chen, Zhenxiang
    Yan, Qiben
    Wang, Shanshan
    Ma, Kun
    Shi, Yuliang
    Cui, Lizhen
    ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, ICA3PP 2018, PT IV, 2018, 11337 : 166 - 177
  • [30] The revolution and vision of explainable AI for Android malware detection and protection
    Ullah, Shamsher
    Li, Jianqiang
    Ullah, Farhan
    Chen, Jie
    Ali, Ikram
    Khan, Salabat
    Ahad, Abdul
    Leung, Victor C. M.
    INTERNET OF THINGS, 2024, 27