Using deep graph learning to improve dynamic analysis-based malware detection in PE files

被引:3
|
作者
Nguyen, Minh Tu [1 ]
Nguyen, Viet Hung [1 ]
Shone, Nathan [2 ]
机构
[1] LeQuyDon Tech Univ, Fac Informat Technol, 236 Hoang Quoc Viet, Hanoi, Vietnam
[2] Liverpool John Moores Univ, Sch Comp Sci & Math, Byrom St, Liverpool L3 3AF, England
关键词
Malware detection; Dynamic analysis; Deep learning; Graph representation;
D O I
10.1007/s11416-023-00505-x
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Detecting zero-day malware in Windows PE files using dynamic analysis techniques has proven to be far more effective than traditional signature-based methods. One specific approach that has emerged in recent years is the use of graphs to represent executable behavior, which can be subsequently used to learn patterns. However, many current graph representations omit key parameter information, meaning that the behavioral impact of variable changes cannot be reliably understood. To combat these shortcomings, we present a new method for malware detection by applying a graph attention network on multi-edge directional heterogeneous graphs constructed from API calls. The experiments show the TPR and FPR scores demonstrated by our model, achieve better performance than those from other related works.
引用
收藏
页码:153 / 172
页数:20
相关论文
共 50 条
  • [31] Deep learning for effective Android malware detection using API call graph embeddings
    Abdurrahman Pektaş
    Tankut Acarman
    Soft Computing, 2020, 24 : 1027 - 1043
  • [32] Deep learning for effective Android malware detection using API call graph embeddings
    Pektas, Abdurrahman
    Acarman, Tankut
    SOFT COMPUTING, 2020, 24 (02) : 1027 - 1043
  • [33] A survey of malware detection using deep learning
    Bensaoud, Ahmed
    Kalita, Jugal
    Bensaoud, Mahmoud
    MACHINE LEARNING WITH APPLICATIONS, 2024, 16
  • [34] Obfuscated Mobile Malware Detection by Means of Dynamic Analysis and Explainable Deep Learning
    Mercaldo, Francesco
    Ciaramella, Giovanni
    Santone, Antonella
    Martinelli, Fabio
    18TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY & SECURITY, ARES 2023, 2023,
  • [35] Malware Detection in Android IoT Systems Using Deep Learning
    Waqar, Muhammad
    Fareed, Sabeeh
    Kim, Ajung
    Malik, Saif Ur Rehman
    Imran, Muhammad
    Yaseen, Muhammad Usman
    CMC-COMPUTERS MATERIALS & CONTINUA, 2023, 74 (02): : 4399 - 4415
  • [36] Static Malware Analysis Using Machine and Deep Learning
    Singh, Himanshu Kumar
    Singh, Jyoti Prakash
    Tewari, Anand Shanker
    PROCEEDINGS OF INTERNATIONAL CONFERENCE ON COMPUTING AND COMMUNICATION NETWORKS (ICCCN 2021), 2022, 394 : 437 - 446
  • [37] MDLDroid: Multimodal Deep Learning Based Android Malware Detection
    Singh, Narendra
    Tripathy, Somanath
    INFORMATION SYSTEMS SECURITY, ICISS 2023, 2023, 14424 : 159 - 177
  • [38] A novel deep learning-based approach for malware detection
    Shaukat, Kamran
    Luo, Suhuai
    Varadharajan, Vijay
    ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2023, 122
  • [39] A Robust Approach for Android Malware Detection Based on Deep Learning
    Li P.-W.
    Jiang Y.-Q.
    Xue F.-Y.
    Huang J.-J.
    Xu C.
    Tien Tzu Hsueh Pao/Acta Electronica Sinica, 2020, 48 (08): : 1502 - 1508
  • [40] DroidDetector: Android Malware Characterization and Detection Using Deep Learning
    Yuan, Zhenlong
    Lu, Yongqiang
    Xue, Yibo
    TSINGHUA SCIENCE AND TECHNOLOGY, 2016, 21 (01) : 114 - 123