Ransomware Detection Model Based on Adaptive Graph Neural Network Learning

被引:0
|
作者
Li, Jun [1 ,2 ]
Yang, Gengyu [1 ,2 ]
Shao, Yanhua [3 ]
机构
[1] Beijing Informat Sci & Technol Univ, Artificial Intelligence Secur Innovat Res, Beijing 100192, Peoples R China
[2] Beijing Informat Sci & Technol Univ, Sch Informat Management, Beijing 100192, Peoples R China
[3] Natl Comp Syst Engn Res Inst China, Beijing 100083, Peoples R China
来源
APPLIED SCIENCES-BASEL | 2024年 / 14卷 / 11期
关键词
adaptive diffusion convolution; deep learning; graph convolutional network; network intrusion detection; ransomware detection; MALWARE DETECTION;
D O I
10.3390/app14114579
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
Ransomware is a type of malicious software that encrypts or locks user files and demands a high ransom. It has become a major threat to cyberspace security, especially as it continues to be developed and updated at exponential rates. Ransomware detection technology has become a focus of research on information security risk detection methods. However, current ransomware detection techniques have high false positive and false negative rates, and traditional methods ignore global word co-occurrence and correlation information between key node steps in the entire process. This poses a significant challenge for accurately identifying and detecting ransomware. We propose a ransomware detection model based on co-occurrence information adaptive diffusion learning using a Text Graph Convolutional Network (ADC-TextGCN). Specifically, ADC-TextGCN first assign self-weights to word nodes based on sensitive API call functions and preserve co-occurrence information using Point Mutual Information Theory (COIR-PMI); then our model automatically learn the optimal neighborhood through an Adaptive Diffusion Convolution (ADC) strategy, thereby improving the ability to aggregate long-distance node information across layers and enhancing the network's ability to represent ransomware behavior. Experimental results show that our method achieves an accuracy of over 96.6% in ransomware detection, proving its effectiveness and superiority compared to traditional methods based on CNN and RNN in ransomware detection.
引用
收藏
页数:22
相关论文
共 50 条
  • [21] Preference learning based on adaptive graph neural network for multi-criteria decision support
    Meng, Zhenhua
    Lin, Rongheng
    Wu, Budan
    APPLIED SOFT COMPUTING, 2024, 167
  • [22] AAGCN: a graph convolutional neural network with adaptive feature and topology learning
    Wang, Bin
    Cai, Bodong
    Sheng, Jinfang
    Jiao, Wenzhe
    SCIENTIFIC REPORTS, 2024, 14 (01):
  • [23] A Graph Neural Network Based Decentralized Learning Scheme
    Gao, Huiguo
    Lee, Mengyuan
    Yu, Guanding
    Zhou, Zhaolin
    SENSORS, 2022, 22 (03)
  • [24] ResACAG: A graph neural network based intrusion detection
    Zhang, Anqin
    Zhao, Yan
    Zhou, Chenhao
    Zhang, Ting
    COMPUTERS & ELECTRICAL ENGINEERING, 2025, 122
  • [25] Graph Neural Network based Multi-instance Learning with Graph Structure Learning
    Liu, Fan
    Liu, Weidong
    2024 7TH INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE AND BIG DATA, ICAIBD 2024, 2024, : 505 - 510
  • [26] Spectral Graph Neural Network Based on Adaptive Combination Filters
    Li, Weinuo
    Huang, Meixiang
    Lu, Fuliang
    Tu, Liangping
    Moshi Shibie yu Rengong Zhineng/Pattern Recognition and Artificial Intelligence, 2024, 37 (12): : 1069 - 1082
  • [27] An Adaptive Deep Learning Neural Network Model to Enhance Machine-Learning-Based Classifiers for Intrusion Detection in Smart Grids
    Li, Xue Jun
    Ma, Maode
    Sun, Yihan
    ALGORITHMS, 2023, 16 (06)
  • [28] Adaptive Kernel Graph Neural Network
    Ju, Mingxuan
    Hou, Shifu
    Fan, Yujie
    Zhao, Jianan
    Ye, Yanfang
    Zhao, Liang
    THIRTY-SIXTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE / THIRTY-FOURTH CONFERENCE ON INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE / THE TWELVETH SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2022, : 7051 - 7058
  • [29] Industrial Internet of Things Based Ransomware Detection using Stacked Variational Neural Network
    AL-Hawawreh, Muna
    Sitnikova, Elena
    3RD INTERNATIONAL CONFERENCE ON BIG DATA AND INTERNET OF THINGS (BDIOT 2019), 2018, : 126 - 130
  • [30] An adaptive intrusion detection model based on ART2 neural network
    Liu, J. (jifenliu@163.com), 1600, Binary Information Press, P.O. Box 162, Bethel, CT 06801-0162, United States (09):