On the effectiveness of adversarial samples against ensemble learning-based windows PE malware detectors

被引:0
|
作者
To, Trong-Nghia [1 ,2 ]
Kim, Danh Le [1 ,2 ]
Hien, Do Thi Thu [1 ,2 ]
Khoa, Nghi Hoang [1 ,2 ]
Hoang, Hien Do [1 ,2 ]
Duy, Phan The [1 ,2 ]
Pham, Van-Hau [1 ,2 ]
机构
[1] Univ Informat Technol, Ho Chi Minh City, Vietnam
[2] Vietnam Natl Univ, Ho Chi Minh City, Vietnam
关键词
Evasion attack; Adversarial attack; Generative adversarial networks; Reinforcement learning; Ensemble learning; Explainable artificial intelligence;
D O I
10.1007/s10207-024-00969-y
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The cybersecurity landscape is witnessing an increasing prevalence of threats and malicious programs, posing formidable challenges to conventional detection techniques. Although machine learning (ML) and deep learning (DL) have demonstrated effectiveness in malware detection, their susceptibility to adversarial attacks has led to a growing research trend. This study aims to provide a general framework that uses Reinforcement Learning and Explainable Artificial Intelligence (XAI) to generate and evaluate mutant Windows malware within the problem space. We concentrate on the three primary problems that arise while performing adversarial attacks on Windows Portable Executable malware, including format preservation, executability preservation, and maliciousness preservation. Additionally, we present an innovative approach called SHAPex to evaluate and clarify the impact of input feature predictions on malware detection predictions. This approach aims to optimize the application of results to future research efforts through three key questions pertaining to the predictive capacity of the ML/DL model. Experimental findings reveal that 100% of the selected mutation samples maintain their format integrity. Additionally, our system ensures the preservation of executable functionality in malware variants, yielding consistent and promising results. We have also encapsulated the analytical outcomes regarding the impact of input features on malware detectors' prediction decisions within a specialized framework based on three research questions, emphasizing the predictive capacity of ML/DL models.
引用
收藏
页数:30
相关论文
共 50 条
  • [41] The Power of MEME: Adversarial Malware Creation with Model-Based Reinforcement Learning
    Rigaki, Maria
    Garcia, Sebastian
    COMPUTER SECURITY - ESORICS 2023, PT IV, 2024, 14347 : 44 - 64
  • [42] Ensemble learning-based early detection of influenza disease
    Ranjan Kumar
    Sajal Maheshwari
    Anushka Sharma
    Sonal Linda
    Subhash Kumar
    Indranath Chatterjee
    Multimedia Tools and Applications, 2024, 83 : 5723 - 5743
  • [43] Robust Android Malware Detection System Against Adversarial Attacks Using Q-Learning
    Hemant Rathore
    Sanjay K. Sahay
    Piyush Nikam
    Mohit Sewak
    Information Systems Frontiers, 2021, 23 : 867 - 882
  • [44] Robust Android Malware Detection System Against Adversarial Attacks Using Q-Learning
    Rathore, Hemant
    Sahay, Sanjay K.
    Nikam, Piyush
    Sewak, Mohit
    INFORMATION SYSTEMS FRONTIERS, 2021, 23 (04) : 867 - 882
  • [45] A Deep Reinforcement Learning Framework to Evade Black-Box Machine Learning Based IoT Malware Detectors Using GAN-Generated Influential Features
    Arif, Rahat Maqsood
    Aslam, Muhammad
    Al-Otaibi, Shaha
    Martinez-Enriquez, Ana Maria
    Saba, Tanzila
    Bahaj, Saeed Ali
    Rehman, Amjad
    IEEE ACCESS, 2023, 11 : 133717 - 133729
  • [46] Learning-Based Robust Anomaly Detection in the Presence of Adversarial Attacks
    Zhong, Chen
    Gursoy, M. Cenk
    Velipasalar, Senem
    2022 IEEE WIRELESS COMMUNICATIONS AND NETWORKING CONFERENCE (WCNC), 2022, : 1206 - 1211
  • [47] Investigating on the robustness of flow-based intrusion detection system against adversarial samples using Generative Adversarial Networks
    Duy, Phan The
    Khoa, Nghi Hoang
    Hien, Do Thi Thu
    Hoang, Hien Do
    Pham, Van-Hau
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2023, 74
  • [48] Reinforcement Learning-Based Cooperative Adversarial Algorithm for UAV Cluster
    Li, Yan
    Gao, Yanlong
    Dai, Xunhua
    Nian, Xiaohong
    Wang, Haibo
    Xiong, HongYun
    PROCEEDINGS OF 2022 INTERNATIONAL CONFERENCE ON AUTONOMOUS UNMANNED SYSTEMS, ICAUS 2022, 2023, 1010 : 1129 - 1138
  • [49] Fvading Deep Learning -Based Malware Detectors via Obfuscation: A Deep Reinforcement Learning Approach
    Etter, Brian
    Hu, James Lee
    Ebrahimi, Mohammadreza
    Li, Weifeng
    Li, Xin
    Chen, Hsinchun
    23RD IEEE INTERNATIONAL CONFERENCE ON DATA MINING, ICDM 2023, 2023, : 101 - 109
  • [50] VMCTE: Visualization-Based Malware Classification Using Transfer and Ensemble Learning
    Chen, Zhiguo
    Cao, Jiabing
    CMC-COMPUTERS MATERIALS & CONTINUA, 2023, 75 (02): : 4445 - 4465