Robust Intelligent Malware Detection Using Deep Learning

被引:216
|
作者
Vinayakumar, R. [1 ]
Alazab, Mamoun [2 ]
Soman, K. P. [1 ]
Poornachandran, Prabaharan [3 ]
Venkatraman, Sitalakshmi [4 ]
机构
[1] Amrita Vishwa Vidyapeetham, Ctr Computat Engn & Networking CEN, Amrita Sch Engn, Coimbatore 641112, Tamil Nadu, India
[2] Charles Darwin Univ, Coll Engn IT & Environm, Casuarina, NT 0810, Australia
[3] Amrita Vishwa Vidyapeetham, Ctr Cyber Secur Syst & Networks, Amrita Sch Engn, Amritapuri 690525, India
[4] Melbourne Polytech, Dept Informat Technol, Prahran Campus, Melbourne, Vic 3181, Australia
来源
IEEE ACCESS | 2019年 / 7卷
关键词
Cyber security; cybercrime; malware detection; static and dynamic analysis; artificial intelligence; machine learning; deep learning; image processing; scalable and hybrid framework;
D O I
10.1109/ACCESS.2019.2906934
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Security breaches due to attacks by malicious software (malware) continue to escalate posing a major security concern in this digital age. With many computer users, corporations, and governments affected due to an exponential growth in malware attacks, malware detection continues to be a hot research topic. Current malware detection solutions that adopt the static and dynamic analysis of malware signatures and behavior patterns are time consuming and have proven to be ineffective in identifying unknown malwares in real-time. Recent malwares use polymorphic, metamorphic, and other evasive techniques to change the malware behaviors quickly and to generate a large number of new malwares. Such new malwares are predominantly variants of existing malwares, and machine learning algorithms (MLAs) are being employed recently to conduct an effective malware analysis. However, such approaches are time consuming as they require extensive feature engineering, feature learning, and feature representation. By using the advanced MLAs such as deep learning, the feature engineering phase can be completely avoided. Recently reported research studies in this direction show the performance of their algorithms with a biased training data, which limits their practical use in real-time situations. There is a compelling need to mitigate bias and evaluate these methods independently in order to arrive at a new enhanced method for effective zero-day malware detection. To fill the gap in the literature, this paper, first, evaluates the classical MLAs and deep learning architectures for malware detection, classification, and categorization using different public and private datasets. Second, we remove all the dataset bias removed in the experimental analysis by having different splits of the public and private datasets to train and test the model in a disjoint way using different timescales. Third, our major contribution is in proposing a novel image processing technique with optimal parameters for MLAs and deep learning architectures to arrive at an effective zero-day malware detection model. A comprehensive comparative study of our model demonstrates that our proposed deep learning architectures outperform classical MLAs. Our novelty in combining visualization and deep learning architectures for static, dynamic, and image processing-based hybrid approach applied in a big data environment is the first of its kind toward achieving robust intelligent zero-day malware detection. Overall, this paper paves way for an effective visual detection of malware using a scalable and hybrid deep learning framework for real-time deployments.
引用
收藏
页码:46717 / 46738
页数:22
相关论文
共 50 条
  • [1] A Robust Malware Detection System Using Deep Learning on API Calls
    Liu, Yingying
    Wang, Yiwei
    PROCEEDINGS OF 2019 IEEE 3RD INFORMATION TECHNOLOGY, NETWORKING, ELECTRONIC AND AUTOMATION CONTROL CONFERENCE (ITNEC 2019), 2019, : 1456 - 1460
  • [2] Malware Detection using Malware Image and Deep Learning
    Choi, Sunoh
    Jang, Sungwook
    Kim, Youngsoo
    Kim, Jonghyun
    2017 INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION TECHNOLOGY CONVERGENCE (ICTC), 2017, : 1193 - 1195
  • [3] DeepAM: a heterogeneous deep learning framework for intelligent malware detection
    Yanfang Ye
    Lingwei Chen
    Shifu Hou
    William Hardy
    Xin Li
    Knowledge and Information Systems, 2018, 54 : 265 - 285
  • [4] DeepAM: a heterogeneous deep learning framework for intelligent malware detection
    Ye, Yanfang
    Chen, Lingwei
    Hou, Shifu
    Hardy, William
    Li, Xin
    KNOWLEDGE AND INFORMATION SYSTEMS, 2018, 54 (02) : 265 - 285
  • [5] Malware Detection with Malware Images using Deep Learning Techniques
    He, Ke
    Kim, Dong Seong
    2019 18TH IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS/13TH IEEE INTERNATIONAL CONFERENCE ON BIG DATA SCIENCE AND ENGINEERING (TRUSTCOM/BIGDATASE 2019), 2019, : 95 - 102
  • [6] A Robust Approach for Android Malware Detection Based on Deep Learning
    Li P.-W.
    Jiang Y.-Q.
    Xue F.-Y.
    Huang J.-J.
    Xu C.
    Tien Tzu Hsueh Pao/Acta Electronica Sinica, 2020, 48 (08): : 1502 - 1508
  • [7] Adversarial Deep Learning for Robust Detection of Binary Encoded Malware
    Al-Dujaili, Abdullah
    Huang, Alex
    Hemberg, Erik
    O'reilly, Una-May
    2018 IEEE SYMPOSIUM ON SECURITY AND PRIVACY WORKSHOPS (SPW 2018), 2018, : 76 - 82
  • [8] A survey of malware detection using deep learning
    Bensaoud, Ahmed
    Kalita, Jugal
    Bensaoud, Mahmoud
    Machine Learning with Applications, 2024, 16
  • [9] Android Malware Detection Using Deep Learning
    Elayan, Omar N.
    Mustafa, Ahmad M.
    12TH INTERNATIONAL CONFERENCE ON AMBIENT SYSTEMS, NETWORKS AND TECHNOLOGIES (ANT) / THE 4TH INTERNATIONAL CONFERENCE ON EMERGING DATA AND INDUSTRY 4.0 (EDI40) / AFFILIATED WORKSHOPS, 2021, 184 : 847 - 852
  • [10] A survey of malware detection using deep learning
    Bensaoud, Ahmed
    Kalita, Jugal
    Bensaoud, Mahmoud
    MACHINE LEARNING WITH APPLICATIONS, 2024, 16