A Semi-Automated Explainability-Driven Approach for Malware Analysis through Deep Learning

被引:3
|
作者
Iadarola, Giacomo [1 ]
Casolare, Rosangela [2 ]
Martinelli, Fabio [1 ]
Mercaldo, Francesco [3 ,4 ]
Peluso, Christian [2 ]
Santone, Antonella [3 ]
机构
[1] Natl Res Council Italy, Inst Informat & Telemat, Pisa, Italy
[2] Univ Molise, Dept Biosci & Terr, Pesche, IS, Italy
[3] Univ Molise, Dept Med & Hlth Sci, Campobasso, Italy
[4] IIT CNR, Campobasso, Italy
来源
2021 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN) | 2021年
关键词
D O I
10.1109/IJCNN52387.2021.9533803
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Cybercriminals are continually working to develop increasingly aggressive malicious code to steal sensitive and private information from mobile devices. Antimalware are not always able to detect all threats, especially when they do not have previous knowledge of the malware signature. Moreover, malware code analysis remains a time-consuming process for security analysts. In this regard, we propose a method aimed to detect the malware belonging family and automatically pointing out a subset of potentially malicious classes. The rationale behind this work aims (i) to save valuable time for the security analyst by decreasing the amount of code to analyse, and (ii) to improve the interpretability of image-based deep learning model for malware family detection. We represent an application as an image and classify it with a deep learning model aimed to predict the belonging family; then, exploiting the use of activation maps, the approach points out potentially malicious classes to help the security analysts in the malicious behaviour recognition. The proposed method obtains an overall accuracy of 0.944 in the evaluation of a dataset composed of 8430 real-world Android malware, showing also that the use of activation maps can provide explainability about the deep learning model decision.
引用
收藏
页数:8
相关论文
共 50 条
  • [1] Deconstructing heterogeneity in schizophrenia through language: a semi-automated linguistic analysis and data-driven clustering approach
    Valentina Bambini
    Federico Frau
    Luca Bischetti
    Federica Cuoco
    Margherita Bechi
    Mariachiara Buonocore
    Giulia Agostoni
    Ilaria Ferri
    Jacopo Sapienza
    Francesca Martini
    Marco Spangaro
    Giorgia Bigai
    Federica Cocchi
    Roberto Cavallaro
    Marta Bosia
    Schizophrenia, 8
  • [2] Deconstructing heterogeneity in schizophrenia through language: a semi-automated linguistic analysis and data-driven clustering approach
    Bambini, Valentina
    Frau, Federico
    Bischetti, Luca
    Cuoco, Federica
    Bechi, Margherita
    Buonocore, Mariachiara
    Agostoni, Giulia
    Ferri, Ilaria
    Sapienza, Jacopo
    Martini, Francesca
    Spangaro, Marco
    Bigai, Giorgia
    Cocchi, Federica
    Cavallaro, Roberto
    Bosia, Marta
    SCHIZOPHRENIA, 2022, 8 (01)
  • [3] Semi-automated segmentation of ONH tissues using deep learning
    Clingo, Kelly A.
    Czerpak, Cameron A.
    Quigley, Harry A.
    Nguyen, Thao D.
    INVESTIGATIVE OPHTHALMOLOGY & VISUAL SCIENCE, 2024, 65 (07)
  • [4] Screening Referable Diabetic Retinopathy Using a Semi-automated Deep Learning Algorithm Assisted Approach
    Wang, Yueye
    Shi, Danli
    Tan, Zachary
    Niu, Yong
    Jiang, Yu
    Xiong, Ruilin
    Peng, Guankai
    He, Mingguang
    FRONTIERS IN MEDICINE, 2021, 8
  • [5] A Semi-Automated Approach for Resolving Data-Driven Architecture Mismatches
    Karathanasis, Christos
    Maikantis, Theodoros
    Nikolaidis, Nikolaos
    Ampatzoglou, Apostolos
    Chatzigeorgiou, Alexander
    Mittas, Nikolaos
    IEEE 21ST INTERNATIONAL CONFERENCE ON SOFTWARE ARCHITECTURE COMPANION, ICSA-C 2024, 2024, : 1 - 7
  • [6] Semi-automated creation of reciprocal frame structures using deep learning
    Agirbas, Asli
    AUTOMATION IN CONSTRUCTION, 2024, 165
  • [7] Semi-Automated Analysis of a Thesis
    Mason, Oliver
    Pennington, Martha C.
    WRITING & PEDAGOGY, 2009, 1 (02): : 303 - 326
  • [8] SEMI-AUTOMATED PROXIMATE ANALYSIS
    SCHUSTER, JH
    CEREAL FOODS WORLD, 1978, 23 (04) : 180 - &
  • [9] A semi-automated approach to online assessment
    Jackson, D
    ITICSE 2000: PROCEEDINGS OF THE 5TH ANNUAL SIGCSE/SIGCUE CONFERENCE ON INNOVATION AND TECHNOLOGY IN COMPUTER SCIENCE EDUCATION, 2000, 32 (03): : 164 - 167
  • [10] Continuous Evaluation of the Learning Process of Algebra Through a Semi-Automated Tool
    Estela Pedroza-Mendez, Blanca
    Manuel Gonzalez-Calleros, Juan
    Guerrero-Garcia, Josefina
    Collazos, Cesar A.
    JOURNAL OF INFORMATION TECHNOLOGY RESEARCH, 2019, 12 (03) : 1 - 20