Detailed Information

Cited 1 time in webofscience Cited 1 time in scopus
Metadata Downloads

Evolutionary Triplet Network of Learning Disentangled Malware Space for Malware Classification

Authors
Park, Kyoung-WonBu, Seok-JunCho, Sung-Bae
Issue Date
Sep-2022
Publisher
Springer Verlag
Keywords
Cybersecurity; Deep learning; Triplet network; Genetic optimization
Citation
Lecture Notes in Computer Science, v.13469, pp 311 - 322
Pages
12
Indexed
SCOPUS
Journal Title
Lecture Notes in Computer Science
Volume
13469
Start Page
311
End Page
322
URI
https://scholarworks.gnu.ac.kr/handle/sw.gnu/73659
DOI
10.1007/978-3-031-15471-3_27
ISSN
0302-9743
1611-3349
Abstract
With the advent of sophisticated deep learning models, various methods for classifying malware from structural features of source codes have been devised. Nevertheless, recent advanced detection-avoidance techniques actively imitate structural features of benign programs and share vulnerable subroutines, making it difficult to distinguish malicious attacks. Therefore, a method to distinguish and classify similar malicious attacks is urgent and significant. In this paper, we propose a method based on a triplet network of learning the disentangled malware space from assembly-level features beyond the structural characteristics of malware. The method comprises two major components, which are 1) triplet loss-trained network to disentangle deep representation between malware being close in the latent vector space, and 2) genetic optimization of assembly-level features to resolve collisions between thousands of assembly-level features. Experiments with the assembly and binary code dataset released from Microsoft show that the proposed method outperforms existing methods based on structural features, achieving the highest performance in 10-fold cross-validation. Moreover, we demonstrate the superiority of disentangled representation for malware classification by visualizing the latent space and ROC curves.
Files in This Item
There are no files associated with this item.
Appears in
Collections
ETC > Journal Articles

qrcode

Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.

Related Researcher

Researcher Seok-Jun, Buu photo

Seok-Jun, Buu
IT공과대학 (컴퓨터공학부)
Read more

Altmetrics

Total Views & Downloads

BROWSE