Ransomware Detection Model Based on Adaptive Graph Neural Network Learning

被引:0
|
作者
Li, Jun [1 ,2 ]
Yang, Gengyu [1 ,2 ]
Shao, Yanhua [3 ]
机构
[1] Beijing Informat Sci & Technol Univ, Artificial Intelligence Secur Innovat Res, Beijing 100192, Peoples R China
[2] Beijing Informat Sci & Technol Univ, Sch Informat Management, Beijing 100192, Peoples R China
[3] Natl Comp Syst Engn Res Inst China, Beijing 100083, Peoples R China
来源
APPLIED SCIENCES-BASEL | 2024年 / 14卷 / 11期
关键词
adaptive diffusion convolution; deep learning; graph convolutional network; network intrusion detection; ransomware detection; MALWARE DETECTION;
D O I
10.3390/app14114579
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
Ransomware is a type of malicious software that encrypts or locks user files and demands a high ransom. It has become a major threat to cyberspace security, especially as it continues to be developed and updated at exponential rates. Ransomware detection technology has become a focus of research on information security risk detection methods. However, current ransomware detection techniques have high false positive and false negative rates, and traditional methods ignore global word co-occurrence and correlation information between key node steps in the entire process. This poses a significant challenge for accurately identifying and detecting ransomware. We propose a ransomware detection model based on co-occurrence information adaptive diffusion learning using a Text Graph Convolutional Network (ADC-TextGCN). Specifically, ADC-TextGCN first assign self-weights to word nodes based on sensitive API call functions and preserve co-occurrence information using Point Mutual Information Theory (COIR-PMI); then our model automatically learn the optimal neighborhood through an Adaptive Diffusion Convolution (ADC) strategy, thereby improving the ability to aggregate long-distance node information across layers and enhancing the network's ability to represent ransomware behavior. Experimental results show that our method achieves an accuracy of over 96.6% in ransomware detection, proving its effectiveness and superiority compared to traditional methods based on CNN and RNN in ransomware detection.
引用
收藏
页数:22
相关论文
共 50 条
  • [1] Optimal Graph Convolutional Neural Network-Based Ransomware Detection for Cybersecurity in IoT Environment
    Alkahtani, Hend Khalid
    Mahmood, Khalid
    Khalid, Majdi
    Othman, Mahmoud
    Al Duhayyim, Mesfer
    Osman, Azza Elneil
    Alneil, Amani A.
    Zamani, Abu Sarwar
    APPLIED SCIENCES-BASEL, 2023, 13 (08):
  • [2] AdaProp: Learning Adaptive Propagation for Graph Neural Network based Knowledge Graph Reasoning
    Zhang, Yongqi
    Zhou, Zhanke
    Yao, Quanming
    Chu, Xiaowen
    Han, Bo
    PROCEEDINGS OF THE 29TH ACM SIGKDD CONFERENCE ON KNOWLEDGE DISCOVERY AND DATA MINING, KDD 2023, 2023, : 3446 - 3457
  • [3] A Behaviour based Ransomware Detection using Neural Network Models
    Ketzaki, Eleni
    Toupas, Petros
    Giannoutakis, Konstantinos M.
    Drosou, Anastasios
    Tzovaras, Dimitrios
    2020 10TH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTER INFORMATION TECHNOLOGIES (ACIT), 2020, : 747 - 750
  • [4] A depression detection model based on multimodal graph neural network
    Xia, Yujing
    Liu, Lin
    Dong, Tao
    Chen, Juan
    Cheng, Yu
    Tang, Lin
    MULTIMEDIA TOOLS AND APPLICATIONS, 2024, 83 (23) : 63379 - 63395
  • [5] Proposed Ransomware Detection Model Based on Machine Learning
    Gonza, Karen
    Torres, Juan
    Curioso, Mars
    Ticona, Wilfredo
    CYBERNETICS AND CONTROL THEORY IN SYSTEMS, VOL 2, CSOC 2024, 2024, 1119 : 287 - 299
  • [6] GNNCL: A Graph Neural Network Recommendation Model Based on Contrastive Learning
    Chen, Jinguang
    Zhou, Jiahe
    Ma, Lili
    NEURAL PROCESSING LETTERS, 2024, 56 (02)
  • [7] GNNCL: A Graph Neural Network Recommendation Model Based on Contrastive Learning
    Jinguang Chen
    Jiahe Zhou
    Lili Ma
    Neural Processing Letters, 56
  • [8] Graph Alignment Neural Network Model With Graph to Sequence Learning
    Ning, Nianwen
    Wu, Bin
    Ren, Haoqing
    Li, Qiuyue
    IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 2024, 36 (09) : 4693 - 4706
  • [9] Interpretability Evaluation of Botnet Detection Model based on Graph Neural Network
    Zhu, Xiaolin
    Zhang, Yong
    Zhang, Zhao
    Guo, Da
    Li, Qi
    Li, Zhao
    IEEE INFOCOM 2022 - IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (INFOCOM WKSHPS), 2022,
  • [10] An adaptive traffic flow prediction model based on spatiotemporal graph neural network
    Liu, Tianbo
    Zhang, Jindong
    JOURNAL OF SUPERCOMPUTING, 2023, 79 (14): : 15245 - 15269