Deep Learning-Based Multi-classification for Malware Detection in IoT

被引:4
|
作者
Wang, Zhiqiang [1 ,2 ]
Liu, Qian [1 ]
Wang, Zhuoyue [1 ]
Chi, Yaping [1 ]
机构
[1] Beijing Elect Sci & Technol Inst, Beijing 100070, Peoples R China
[2] State Informat Ctr, Beijing 100045, Peoples R China
基金
中国博士后科学基金;
关键词
Android malware family; image feature; deep learning; multiple classifications; Internet of Things;
D O I
10.1142/S0218126622502978
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Due to the open-source and versatility of the Android operating system, Android malware has exploded, and the malware detection of Android IoT devices has become a research hotspot in recent years. Static analysis technology cannot effectively analyze obfuscated malware. Without decomposing, the existing detection methods are mainly based on grayscale images and single files without analyzing and verifying their anti-obfuscation performance. In addition, the current detection of Android malware using deep learning is concentrated in the field of binary classification. This paper proposes a multi-classification method of the Android malware family based on multi-class feature files and RGB images to solve these problems. The method proposed in this paper does not need to decompile the Android APK installation package. However, it extracts the DEX file and XML file in batch from the APK installation package. Then, it converts the file into an RGB image using the conversion algorithm that converts Android software into images. Finally, the deep neural network automatically obtains the RGB image texture features to realize the multiple classifications of the Android malware family. Experimental data show that the proposed method has high detection performance, and the accuracy of multiple classifications of the Android malware family is as high as 99.84%. In addition, the method based on RGB image is better than the gray-scale image in detection accuracy, and the effect of RGB image combined with DEX and XML is better than that of separate DEX file image and separate XML file image. Therefore, the method proposed in this paper can effectively detect the obfuscated Android malware, and the detection accuracy of 99.23% can be achieved for the obfuscated sample data. Furthermore, this method has good anti-obfuscation ability. The proposed method is compared with those based on Multi-Layer Perceptron, Long Short-Term Memory, bidirectional Long Short-Term Memory and Deep Belief Network. The experimental results show the proposed method's effectiveness and high generalization performance.
引用
收藏
页数:24
相关论文
共 50 条
  • [1] Transfer Learning for Malware Multi-Classification
    Al Kadri, Mohamad
    Nassar, Mohamed
    Safa, Haidar
    IDEAS '19: PROCEEDINGS OF THE 23RD INTERNATIONAL DATABASE APPLICATIONS & ENGINEERING SYMPOSIUM (IDEAS 2019), 2019, : 151 - 157
  • [2] A Deep Learning Approach for IoT Traffic Multi-Classification in a Smart-City Scenario
    Hameed, Aroosa
    Violos, John
    Leivadeas, Aris
    IEEE ACCESS, 2022, 10 : 21193 - 21210
  • [3] A Multi-Dimensional Deep Learning Framework for IoT Malware Classification and Family Attribution
    Dib, Mirabelle
    Torabi, Sadegh
    Bou-Harb, Elias
    Assi, Chadi
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2021, 18 (02): : 1165 - 1177
  • [4] A novel deep learning-based approach for malware detection
    Shaukat, Kamran
    Luo, Suhuai
    Varadharajan, Vijay
    ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2023, 122
  • [5] An IoT deep learning-based home appliances management and classification system
    Solatidehkordi, Zahra
    Ramesh, Jayroop
    Al-Ali, A. R.
    Osman, Ahmed
    Shaaban, Mostafa
    ENERGY REPORTS, 2023, 9 : 503 - 509
  • [6] An IoT deep learning-based home appliances management and classification system
    Solatidehkordi, Zahra
    Ramesh, Jayroop
    Al-Ali, A. R.
    Osman, Ahmed
    Shaaban, Mostafa
    ENERGY REPORTS, 2023, 9 : 503 - 509
  • [7] An IoT deep learning-based home appliances management and classification system
    Solatidehkordi, Zahra
    Ramesh, Jayroop
    Al-Ali, A. R.
    Osman, Ahmed
    Shaaban, Mostafa
    ENERGY REPORTS, 2023, 9 : 503 - 509
  • [8] Intelligent Hyperparameter-Tuned Deep Learning-Based Android Malware Detection and Classification Model
    Raphael, Rincy
    Mathiyalagan, P.
    JOURNAL OF CIRCUITS SYSTEMS AND COMPUTERS, 2023, 32 (11)
  • [9] Deep learning-based improved transformer model on android malware detection and classification in internet of vehicles
    Almakayeel, Naif
    SCIENTIFIC REPORTS, 2024, 14 (01):
  • [10] On the Influence of Image Settings in Deep Learning-based Malware Detection
    Mercaldo, Francesco
    Martinelli, Fabio
    Santone, Antonella
    Vinod, P.
    PROCEEDINGS OF THE 8TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY (ICISSP), 2021, : 669 - 676