StratDef: Strategic defense against adversarial attacks in ML-based malware detection

被引:2
作者
Rashid, Aqib [1 ]
Such, Jose [1 ]
机构
[1] Kings Coll London, Dept Informat, London WC2R 2LS, England
关键词
Adversarial machine learning; Adversarial examples; Malware detection; Machine learning security; Deep learning;
D O I
10.1016/j.cose.2023.103459
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Over the years, most research towards defenses against adversarial attacks on machine learning models has been in the image recognition domain. The ML-based malware detection domain has received less attention despite its importance. Moreover, most work exploring these defenses has focused on several methods but with no strategy when applying them. In this paper, we introduce StratDef, which is a strategic defense system based on a moving target defense approach. We overcome challenges related to the systematic construction, selection, and strategic use of models to maximize adversarial robustness. StratDef dynamically and strategically chooses the best models to increase the uncertainty for the attacker while minimizing critical aspects in the adversarial ML domain, like attack transferability. We provide the first comprehensive evaluation of defenses against adversarial attacks on machine learning for malware detection, where our threat model explores different levels of threat, attacker knowledge, capabilities, and attack intensities. We show that StratDef performs better than other defenses even when facing the peak adversarial threat. We also show that, of the existing defenses, only a few adversariallytrained models provide substantially better protection than just using vanilla models but are still outperformed by StratDef.
引用
收藏
页数:18
相关论文
共 50 条
  • [11] Systematically Evaluating the Robustness of ML-based IoT Malware Detection Systems
    Abusnaina, Ahmed
    Anwar, Afsah
    Alshamrani, Sultan
    Alabduljabbar, Abdulrahman
    Jang, Rhongho
    Nyang, DaeHun
    Mohaisen, David
    PROCEEDINGS OF 25TH INTERNATIONAL SYMPOSIUM ON RESEARCH IN ATTACKS, INTRUSIONS AND DEFENSES, RAID 2022, 2022, : 308 - 320
  • [12] MOBIPCR: Efficient, accurate, and strict ML-based mobile malware detection
    Liu, Chuanchang
    Lu, Jianyun
    Feng, Wendi
    Du, Enbo
    Di, Luyang
    Song, Zhen
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2023, 144 : 140 - 150
  • [13] Defensive Randomization Against Adversarial Attacks in Image-based Android Malware Detection
    Lan, Tianwei
    Darwaish, Asim
    Nait-Abdesselam, Farid
    Gu, Pengwenlong
    ICC 2023-IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, 2023, : 5072 - 5077
  • [14] PAD: Towards Principled Adversarial Malware Detection Against Evasion Attacks
    Li, Deqiang
    Cui, Shicheng
    Li, Yun
    Xu, Jia
    Xiao, Fu
    Xu, Shouhuai
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (02) : 920 - 936
  • [15] Systemically Evaluating the Robustness of ML-based IoT Malware Detectors
    Abusnaina, Ahmed
    Anwar, Afsah
    Alshamrani, Sultan
    Alabduljabbar, Abdulrahman
    Jang, Rhongho
    Nyang, Daehun
    Mohaisen, David
    51ST ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS - SUPPLEMENTAL VOL (DSN 2021), 2021, : 3 - 4
  • [16] Efficient Query-Based Attack against ML-Based Android Malware Detection under Zero Knowledge Setting
    He, Ping
    Xia, Yifan
    Zhang, Xuhong
    Ji, Shouling
    PROCEEDINGS OF THE 2023 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, CCS 2023, 2023, : 90 - 104
  • [17] Adversarial Learning Attacks on Graph-based IoT Malware Detection Systems
    Abusnaina, Ahmed
    Khormali, Aminollah
    Alasmary, Hisham
    Park, Jeman
    Anwar, Afsah
    Mohaisen, Aziz
    2019 39TH IEEE INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS (ICDCS 2019), 2019, : 1296 - 1305
  • [18] A Low Complexity ML-Based Methods for Malware Classification
    Farfoura, Mahmoud E.
    Alkhatib, Ahmad
    Alsekait, Deema Mohammed
    Alshinwan, Mohammad
    El-Rahman, Sahar A.
    Rosiyadi, Didi
    AbdElminaam, Diaa Salama
    CMC-COMPUTERS MATERIALS & CONTINUA, 2024, 80 (03): : 4833 - 4857
  • [19] A Robust Malware Detection Approach for Android System against Adversarial Example Attacks
    Li, Wenjia
    Bala, Neha
    Ahmar, Aemun
    Tovar, Fernanda
    Battu, Arpit
    Bambarkar, Prachi
    2019 IEEE 5TH INTERNATIONAL CONFERENCE ON COLLABORATION AND INTERNET COMPUTING (CIC 2019), 2019, : 360 - 365
  • [20] Adversarial Machine Learning Attacks against Intrusion Detection Systems: A Survey on Strategies and Defense
    Alotaibi, Afnan
    Rassam, Murad A.
    FUTURE INTERNET, 2023, 15 (02)