Deep Neural Network Based Malware Detection Using Two Dimensional Binary Program Features

被引:0
|
作者
Saxe, Joshua [1 ]
Berlin, Konstantin [1 ]
机构
[1] Invincea Labs LLC, Fairfax, VA 22030 USA
关键词
D O I
暂无
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
In this paper we introduce a deep neural network based malware detection system that Invincea has developed, which achieves a usable detection rate at an extremely low false positive rate and scales to real world training example volumes on commodity hardware. We show that our system achieves a 95% detection rate at 0.1% false positive rate (FPR), based on more than 400,000 software binaries sourced directly from our customers and internal malware databases. In addition, we describe a non-parametric method for adjusting the classifier's scores to better represent expected precision in the deployment environment. Our results demonstrate that it is now feasible to quickly train and deploy a low resource, highly accurate machine learning classification model, with false positive rates that approach traditional labor intensive expert rule based malware detection, while also detecting previously unseen malware missed by these traditional approaches. Since machine learning models tend to improve with larger data sizes, we foresee deep neural network classification models gaining in importance as part of a layered network defense strategy in coming years.
引用
收藏
页码:11 / 20
页数:10
相关论文
共 50 条
  • [31] Deep Image: An Efficient Image-Based Deep Conventional Neural Network Method for Android Malware Detection
    Marzouk, Marwa A.
    Elkholy, Mohamed
    JOURNAL OF ADVANCES IN INFORMATION TECHNOLOGY, 2023, 14 (04) : 838 - 845
  • [32] Hybrid Malware Classification Method Using Segmentation-Based Fractal Texture Analysis and Deep Convolution Neural Network Features
    Nisa, Maryam
    Shah, Jamal Hussain
    Kanwal, Shansa
    Raza, Mudassar
    Khan, Muhammad Attique
    Damasevicius, Robertas
    Blazauskas, Tomas
    APPLIED SCIENCES-BASEL, 2020, 10 (14):
  • [33] Similarity-based Android malware detection using Hamming distance of static binary features
    Taheri, Rahim
    Ghahramani, Meysam
    Javidan, Reza
    Shojafar, Mohammad
    Pooranian, Zahra
    Conti, Mauro
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2020, 105 : 230 - 247
  • [34] Malware detection approach based on deep convolutional neural networks
    El Merabet, Hoda
    Hajraoui, Abderrahmane
    INTERNATIONAL JOURNAL OF INFORMATION AND COMPUTER SECURITY, 2023, 20 (1-2) : 145 - 157
  • [35] A novel method for malware detection based on hardware events using deep neural networks
    Ghanei, Hadis
    Manavi, Farnoush
    Hamzeh, Ali
    JOURNAL OF COMPUTER VIROLOGY AND HACKING TECHNIQUES, 2021, 17 (04) : 319 - 331
  • [36] A novel method for malware detection based on hardware events using deep neural networks
    Hadis Ghanei
    Farnoush Manavi
    Ali Hamzeh
    Journal of Computer Virology and Hacking Techniques, 2021, 17 : 319 - 331
  • [37] EEG-based epileptic seizure detection using binary dragonfly algorithm and deep neural network
    G. Yogarajan
    Najah Alsubaie
    G. Rajasekaran
    T. Revathi
    Mohammed S. Alqahtani
    Mohamed Abbas
    Madshush M. Alshahrani
    Ben Othman Soufiene
    Scientific Reports, 13
  • [38] EEG-based epileptic seizure detection using binary dragonfly algorithm and deep neural network
    Yogarajan, G.
    Alsubaie, Najah
    Rajasekaran, G.
    Revathi, T.
    Alqahtani, Mohammed S.
    Abbas, Mohamed
    Alshahrani, Madshush M.
    Soufiene, Ben Othman
    SCIENTIFIC REPORTS, 2023, 13 (01)
  • [39] A DGA Domain Name Detection Model Based on A Hybrid Deep Neural Network with Multi-dimensional Features
    Pan, Rui
    Wang, Yu
    Wang, Zuchao
    IAENG International Journal of Computer Science, 2025, 52 (01) : 11 - 22
  • [40] Malware Detection with Convolutional Neural Network Using Hardware Events
    Guo, Wei
    Wang, Tenghai
    Wei, Jizeng
    COMPUTER ENGINEERING AND TECHNOLOGY, NCCET 2017, 2018, 600 : 104 - 115