Comprehensive Analysis of Consistency and Robustness of Machine Learning Models in Malware Detection

被引:0
|
作者
Kasarapu, Sreenitha [1 ]
Bhusal, Dipkamal [2 ]
Rastogi, Nidhi [2 ]
Dinakarrao, Sai Manoj Pudukotai [1 ]
机构
[1] George Mason Univ, Fairfax, VA 22030 USA
[2] Rochester Inst Technol, Rochester, NY 14623 USA
关键词
D O I
10.1145/3649476.3658725
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Cybersecurity in recent years has gained significant attention, especially with the deployment of millions of devices across the globe and increased threats targeted toward embedded systems. Many cyber threats have been detected and emerged in the last few years. Among multiple threats, malware attacks are considered to be prominent due to the impact on users and systems. Considering the evolving trend of such cyber threats, traditional statistical and heuristic threat detection approaches have observed the need to be more effective and efficient. Machine learning (ML)-based cyber-threat detection has been actively researched and adopted across academia and industry to address the challenges of evolving cyber threats. However, ML-based neural network techniques though efficient, are considered black boxes due to the lack of sufficient information that can be used to deduce their functionality. On the other hand, the interpretable and explainable AI/ML field focuses on the explainability and reason for the decisions performed by the ML models. In this paper, we experiment with different explainable AI (XAI) techniques for interpreting multiple malware detection models. Specifically, we analyze the consistency and reliability of these neural network models in determining an attack and benign functions. We provide quantitative analysis of multiple explanation methods across different datasets. When trained with the top feature attributes (10%-35% of whole data) generated by XAI methods, the ML classifiers (trained on High Performance Counters and Mimicus PDF malware datasets) retain a malware detection accuracy of 88%-92%. The ML classifiers are also compared with state-of-the-art models and the proposed technique (training with partial data features generated by explainable methods) produce comparable malware detection accuracy above 82%.
引用
收藏
页码:477 / 482
页数:6
相关论文
共 50 条
  • [31] Adversarial Robustness of Image Based Android Malware Detection Models
    Rathore, Hemant
    Bandwala, Taeeb
    Sahay, Sanjay K.
    Sewak, Mohit
    [J]. SECURE KNOWLEDGE MANAGEMENT IN THE ARTIFICIAL INTELLIGENCE ERA, 2022, 1549 : 3 - 22
  • [32] Android Malware Detection Using Hybrid Analysis and Machine Learning Technique
    Yang, Fan
    Zhuang, Yi
    Wang, Jun
    [J]. CLOUD COMPUTING AND SECURITY, PT II, 2017, 10603 : 565 - 575
  • [33] PDF Malware Detection: Toward Machine Learning Modeling With Explainability Analysis
    Hossain, G. M. Sakhawat
    Deb, Kaushik
    Janicke, Helge
    Sarker, Iqbal H.
    [J]. IEEE ACCESS, 2024, 12 : 13833 - 13859
  • [34] A Machine-Learning-Based Framework for Supporting Malware Detection and Analysis
    Cuzzocrea, Alfredo
    Mercaldo, Francesco
    Martinelli, Fabio
    [J]. COMPUTATIONAL SCIENCE AND ITS APPLICATIONS, ICCSA 2021, PT III, 2021, 12951 : 353 - 365
  • [35] Machine Learning Analysis of Memory Images for Process Characterization and Malware Detection
    Lyles, Seth
    Desantis, Mark
    Donaldson, John
    Gallegos, Micaela
    Nyholm, Hannah
    Taylor, Claire
    Monteith, Kristine
    [J]. 52ND ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS WORKSHOP VOLUME (DSN-W 2022), 2022, : 162 - 169
  • [36] An Experimental Analysis on Malware Detection in Executable Files using Machine Learning
    Sharma, Anurag
    Mohanty, Suman
    Islam, Md Ruhul
    [J]. 2021 8TH INTERNATIONAL CONFERENCE ON SMART COMPUTING AND COMMUNICATIONS (ICSCC), 2021, : 178 - 182
  • [37] ANALYSIS OF FEATURES SELECTION AND MACHINE LEARNING CLASSIFIER IN ANDROID MALWARE DETECTION
    Mas'ud, Mohd Zaki
    Sahib, Shahrin
    Abdollah, Mohd Faizal
    Selamat, Siti Rahayu
    Yusof, Robiah
    [J]. 2014 INTERNATIONAL CONFERENCE ON INFORMATION SCIENCE AND APPLICATIONS (ICISA), 2014,
  • [38] An Android Malware Detection Leveraging Machine Learning
    Shatnawi, Ahmed S.
    Jaradat, Aya
    Yaseen, Tuqa Bani
    Taqieddin, Eyad
    Al-Ayyoub, Mahmoud
    Mustafa, Dheya
    [J]. WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2022, 2022
  • [39] The Curious Case of Machine Learning in Malware Detection
    Saad, Sherif
    Briguglio, William
    Elmiligi, Haytham
    [J]. PROCEEDINGS OF THE 5TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY (ICISSP), 2019, : 528 - 535
  • [40] Analysis of Android Malware Detection Performance using Machine Learning Classifiers
    Ham, Hyo-Sik
    Choi, Mi-Jung
    [J]. 2013 INTERNATIONAL CONFERENCE ON ICT CONVERGENCE (ICTC 2013): FUTURE CREATIVE CONVERGENCE TECHNOLOGIES FOR NEW ICT ECOSYSTEMS, 2013, : 492 - 497