An Adversarial Reinforcement Learning Framework for Robust Machine Learning-based Malware Detection

被引:1
|
作者
Ebrahimi, Mohammadreza [1 ]
Li, Weifeng
Chai, Yidong [2 ]
Pacheco, Jason [3 ]
Chen, Hsinchun
机构
[1] Univ S Florida, Sch Informat Syst & Management, Tampa, FL 33620 USA
[2] Hefei Univ Technol, Sch Management, Hefei, Peoples R China
[3] Univ Arizona, Dept Comp Sci, Tucson, AZ USA
基金
美国国家科学基金会;
关键词
adversarial robustness; adversarial learning; machine learning-based malware detection; adversarial malware variants; adversarial minimax game;
D O I
10.1109/ICDMW58026.2022.00079
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Empowered by the recent development in Machine Learning (ML), signatureless ML-based malware detectors present promising performance in identifying unseen malware variants and zero days without requiring expensive dynamic malware analysis. However, it has been recently shown that ML-based malware detectors are vulnerable to adversarial malware attacks, in which an attacker modifies a known malware executable to trick the malware detector into recognizing the modified variant as benign. Adversarial malware example generation has become an emerging area in adversarial ML that studies creating functionality-preserving adversarial malware variants. Advancements in this area have led to an eternal game between the adversary and defender. While the area has attracted much attention in the security community, a large body of these studies merely focuses on attack methods against ML-based malware detectors. There has been little work on understanding how these adversarial variants can be systematically used by the defender to strengthen the robustness of these detectors and stand ahead of the adversary. Latest efforts have led to emergence of adversarial learning. In this work, we propose a simple wargame approach to empirically conduct the adversarial minimax optimization underlying in the adversarial learning for improving the robustness of ML-based malware detectors. Our proposed approach employs adversarial malware variants generated from a reinforcement learning-based adversarial attack policy in a minimax game alternating between strengthening the attack policy and improving the detectors' robustness. We evaluated the effectiveness of our approach on a testbed with 33.2 GB working malware collected from VirusTotal. Despite the sub-optimal nature of our method, it was able to surprisingly enhance the robustness of three known open-source ML-based malware detectors (LGBM, MalConv, and NonNeg) against the adversarial malware variants by 4, 7, and 11 times, respectively.
引用
收藏
页码:567 / 576
页数:10
相关论文
共 50 条
  • [1] Leveraging Classification and Detection of Malware: A Robust Machine Learning-Based Framework
    Sethi, Lingaraj
    Patra, Prashanta Kumar
    [J]. PROCEEDINGS OF SECOND INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTER ENGINEERING AND COMMUNICATION SYSTEMS, ICACECS 2021, 2022, : 299 - 306
  • [2] Transferability of Adversarial Examples in Machine Learning-based Malware Detection
    Hu, Yang
    Wang, Ning
    Chen, Yimin
    Lou, Wenjing
    Hou, Y. Thomas
    [J]. 2022 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2022, : 28 - 36
  • [3] Enhancing Machine Learning Based Malware Detection Model by Reinforcement Learning
    Wu, Cangshuai
    Shi, Jiangyong
    Yang, Yuexiang
    Li, Wenhua
    [J]. ICCNS 2018: PROCEEDINGS OF THE 8TH INTERNATIONAL CONFERENCE ON COMMUNICATION AND NETWORK SECURITY, 2018, : 74 - 78
  • [4] An Adversarial Learning-based Tor Malware Traffic Detection Model
    Hu, Xiaoyan
    Gao, Yishu
    Cheng, Guang
    Wu, Hua
    Li, Ruidong
    [J]. 2022 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM 2022), 2022, : 74 - 79
  • [5] ATMPA: Attacking Machine Learning-based Malware Visualization Detection Methods via Adversarial Examples
    Liu, Xinbo
    Zhang, Jiliang
    Lin, Yaping
    Li, He
    [J]. PROCEEDINGS OF THE IEEE/ACM INTERNATIONAL SYMPOSIUM ON QUALITY OF SERVICE (IWQOS 2019), 2019,
  • [6] SecureDroid: Enhancing Security of Machine Learning-based Detection against Adversarial Android Malware Attacks
    Chen, Lingwei
    Hou, Shifu
    Ye, Yanfang
    [J]. 33RD ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE (ACSAC 2017), 2017, : 362 - 372
  • [7] MTMG: A Framework for Generating Adversarial Examples Targeting Multiple Learning-Based Malware Detection Systems
    [J]. Jiang, Zihan (jiangzihan0512@gmail.com), 1600, Springer Science and Business Media Deutschland GmbH (14325 LNAI):
  • [8] MAB-MALWARE: A Reinforcement Learning Framework for Blackbox Generation of Adversarial Malware
    Song, Wei
    Li, Xuezixiang
    Afroz, Sadia
    Garg, Deepali
    Kuznetsov, Dmitry
    Yin, Heng
    [J]. ASIA CCS'22: PROCEEDINGS OF THE 2022 ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2022, : 990 - 1003
  • [9] Adversarial robustness of deep reinforcement learning-based intrusion detection
    Merzouk, Mohamed Amine
    Neal, Christopher
    Delas, Josephine
    Yaich, Reda
    Boulahia-Cuppens, Nora
    Cuppens, Frederic
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2024, : 3625 - 3651
  • [10] A survey on machine learning-based malware detection in executable files
    Singh, Jagsir
    Singh, Jaswinder
    [J]. JOURNAL OF SYSTEMS ARCHITECTURE, 2021, 112