Hardware-Based Malware Detection Using Low-Level Architectural Features

被引:64
作者
Ozsoy, Meltem [1 ]
Khasawneh, Khaled N. [2 ]
Donovick, Caleb [3 ]
Gorelik, Iakov [3 ]
Abu-Ghazaleh, Nael [2 ]
Ponomarev, Dmitry [3 ]
机构
[1] Intel Corp, Secur & Privacy Lab, Hillsboro, OR 97124 USA
[2] Univ Calif Riverside, CSE & ECE Dept, Riverside, CA 92521 USA
[3] SUNY Binghamton, CS Dept, Binghamton, NY 13902 USA
基金
美国国家科学基金会;
关键词
Malware detection; architecture; security; low-level features;
D O I
10.1109/TC.2016.2540634
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Security exploits and ensuant malware pose an increasing challenge to computing systems as the variety and complexity of attacks continue to increase. In response, software-based malware detection tools have grown in complexity, thus making it computationally difficult to use them to protect systems in real-time. Therefore, software detectors are applied selectively and at a low frequency, creating opportunities for malware to remain undetected. In this paper, we propose Malware-Aware Processors ( MAP)processors augmented with a hardware-based online malware detector to serve as the first line of defense to differentiate malware from legitimate programs. The output of this detector helps the system prioritize how to apply more expensive software-based solutions. The always-on nature of MAP detector helps protect against intermittently operating malware. We explore the use of different features for classification and study both logistic regression and neural networks. We show that the detectors can achieve excellent performance, with little hardware overhead. We integrate the MAP implementation with an open-source x86-compatible core, synthesizing the resulting design to run on an FPGA.
引用
收藏
页码:3332 / 3344
页数:13
相关论文
共 50 条
  • [31] New Direction for Malware Detection Using System Features
    Balogh, Stefan
    Mojzis, Jan
    PROCEEDINGS OF THE 2019 10TH IEEE INTERNATIONAL CONFERENCE ON INTELLIGENT DATA ACQUISITION AND ADVANCED COMPUTING SYSTEMS - TECHNOLOGY AND APPLICATIONS (IDAACS), VOL. 1, 2019, : 176 - 183
  • [32] Android malware detection based on sensitive features combination
    Yao, Xuanxia
    Li, Yang
    Shi, Zhiguo
    Liu, Kaijun
    Du, XiaoJiang
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2023, 35 (06) : 1
  • [33] An unknown malware detection scheme based on the features of graph
    Zhao, Zongqu
    Wang, Junfeng
    Wang, Chonggang
    SECURITY AND COMMUNICATION NETWORKS, 2013, 6 (02) : 239 - 246
  • [34] Hardware-Assisted Malware Detection using Explainable Machine Learning
    Pan, Zhixin
    Sheldon, Jennifer
    Mishra, Prabhat
    2020 IEEE 38TH INTERNATIONAL CONFERENCE ON COMPUTER DESIGN (ICCD 2020), 2020, : 663 - 666
  • [35] Federated malware detection based on many-objective optimization in cross-architectural IoT
    Zhang, Zhigang
    Zhang, Zhixia
    Cui, Zhihua
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024, 36 (03)
  • [36] Toward Hardware-Based IP Vulnerability Detection and Post-Deployment Patching in Systems-on-Chip
    Tan, Benjamin
    Elnaggar, Rana
    Fung, Jason M.
    Karri, Ramesh
    Chakrabarty, Krishnendu
    IEEE TRANSACTIONS ON COMPUTER-AIDED DESIGN OF INTEGRATED CIRCUITS AND SYSTEMS, 2021, 40 (06) : 1158 - 1171
  • [37] The Hardware-Based PKCS#11 Standard using the RSA Algorithm
    Muzzi, F. A.
    Chiaramonte, R. B.
    Moreno, E. D.
    IEEE LATIN AMERICA TRANSACTIONS, 2009, 7 (02) : 160 - 169
  • [38] Technique for detecting hardware-based Trojans using a convolutional neural network
    Ravichandran, C.
    Nagalakshmi, T. J.
    Bharathi, P. Shyamala
    Sivakumaran, C.
    INTERNATIONAL JOURNAL OF INFORMATION AND COMPUTER SECURITY, 2024, 23 (03) : 338 - 347
  • [39] Intelligent Malware Detection based on Hardware Performance Counters: A Comprehensive Survey
    Sayadi, Hossein
    He, Zhangying
    Makrani, Hosein Mohammadi
    Homayoun, Houman
    2024 25TH INTERNATIONAL SYMPOSIUM ON QUALITY ELECTRONIC DESIGN, ISQED 2024, 2024,
  • [40] Distorted Low-Level Visual Features Affect Saliency-Based Visual Attention
    Bahmani, Hamed
    Wahl, Siegfried
    FRONTIERS IN COMPUTATIONAL NEUROSCIENCE, 2016, 10