Deep Learning for Zero-day Malware Detection and Classification: A Survey

被引:17
|
作者
Deldar, Fatemeh [1 ]
Abadi, Mahdi [1 ]
机构
[1] Tarbiat Modares Univ, Dept Comp Engn, Jalal Al e Ahmad Hwy, Tehran 1411713116, Iran
基金
美国国家科学基金会;
关键词
Zero-day malware; malware detection and classification; unsupervised; semi-supervised; few-shot; adversarial resistant; deep learning; NEURAL-NETWORKS; FRAMEWORK; ATTACKS; ALGORITHMS;
D O I
10.1145/3605775
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Zero-day malware is malware that has never been seen before or is so new that no anti-malware software can catch it. This novelty and the lack of existing mitigation strategies make zero-day malware challenging to detect and defend against. In recent years, deep learning has become the dominant and leading branch of machine learning in various research fields, including malware detection. Considering the significant threat of zero-day malware to cybersecurity and business continuity, it is necessary to identify deep learning techniques that can somehow be effective in detecting or classifying such malware. But so far, such a comprehensive review has not been conducted. In this article, we study deep learning techniques in terms of their ability to detect or classify zero-day malware. Based on our findings, we propose a taxonomy and divide different zero-day resistant, deep malware detection and classification techniques into four main categories: unsupervised, semi-supervised, few-shot, and adversarial resistant. We compare the techniques in each category in terms of various factors, including deep learning architecture, feature encoding, platform, detection or classification functionality, and whether the authors have performed a zero-day evaluation. We also provide a summary view of the reviewed papers and discuss their main characteristics and challenges.
引用
收藏
页数:37
相关论文
共 50 条
  • [1] Zero-Day Malware Classification and Detection Using Machine Learning
    Kumar J.
    Rajendran B.
    Sudarsan S.D.
    SN Computer Science, 5 (1)
  • [2] Zero-Day Malware Detection
    Gandotra, Ekta
    Bansal, Divya
    Sofat, Sanjccv
    2016 SIXTH INTERNATIONAL SYMPOSIUM ON EMBEDDED COMPUTING AND SYSTEM DESIGN (ISED 2016), 2016, : 171 - 175
  • [3] Multi-view deep learning for zero-day Android malware detection
    Millar, Stuart
    McLaughlin, Niall
    del Rincon, Jesus Martinez
    Miller, Paul
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2021, 58
  • [4] A survey of zero-day malware attacks and its detection methodology
    Radhakrishnan, Kiran
    Menon, Rajeev R.
    Nath, Hiran V.
    PROCEEDINGS OF THE 2019 IEEE REGION 10 CONFERENCE (TENCON 2019): TECHNOLOGY, KNOWLEDGE, AND SOCIETY, 2019, : 533 - 539
  • [5] Classification and online clustering of zero-day malware
    Jureckova, Olha
    Jurecek, Martin
    Stamp, Mark
    Di Troia, Fabio
    Lorencz, Robert
    JOURNAL OF COMPUTER VIROLOGY AND HACKING TECHNIQUES, 2024, 20 (04) : 579 - 592
  • [6] Combining Supervised and Unsupervised Learning for Zero-Day Malware Detection
    Comar, Prakash Mandayam
    Liu, Lei
    Saha, Sabyasachi
    Tan, Pang-Ning
    Nucci, Antonio
    2013 PROCEEDINGS IEEE INFOCOM, 2013, : 2022 - 2030
  • [7] Deep Neural Network and Transfer Learning for Accurate Hardware-Based Zero-Day Malware Detection
    He, Zhangying
    Rezaei, Amin
    Homayoun, Houman
    Sayadi, Hossein
    PROCEEDINGS OF THE 32ND GREAT LAKES SYMPOSIUM ON VLSI 2022, GLSVLSI 2022, 2022, : 27 - 32
  • [8] Big Data Framework for Zero-Day Malware Detection
    Gupta, Deepak
    Rani, Rinkle
    CYBERNETICS AND SYSTEMS, 2018, 49 (02) : 103 - 121
  • [9] Use of Data Visualisation for Zero-Day Malware Detection
    Venkatraman, Sitalakshmi
    Alazab, Mamoun
    SECURITY AND COMMUNICATION NETWORKS, 2018,
  • [10] Can Machine/Deep Learning Classifiers Detect Zero-Day Malware with High Accuracy?
    Abri, Faranak
    Siami-Namini, Sima
    Khanghah, Mandi Adl
    Soltani, Fahimch Mirza
    Namin, Akbar Siami
    2019 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2019, : 3252 - 3259