Javascript must be enabled to continue!
ProDef-MDS: A Proactive Defense Mechanism Protecting Malware Detection Systems from Adversarial Attacks
View through CrossRef
Malware threatens cybersecurity by enabling data theft, unauthorized access, and extortion. Traditional malware detection systems (MDS) struggle with the increasing volume and complexity of malware. While machine learning (ML) and deep learning (DL) offer promising solutions, they remain vulnerable to adversarial attacks that evade detection. Recent research focuses on developing adversarial datasets to retrain ML/DL-based malware detection systems, enhancing their robustness against adversarial attacks. While these methods improve detection of adversarial samples, they also cause more misclassification of non-adversarial data due to overfitting. These methods lack scalability when ML/DL-based MDS are retrained in isolation, without utilizing knowledge from other MDS with retrained models, leading to inefficiency and waste. To tackle these issues, we introduce ProDef-MDS, a proactive defense system that integrates an Adversarial Restoration (AR) module to mitigate adversarial perturbations and recover inputs to a correctly classifiable form before passing them into the malware classification model. We focus on portable executable (PE) malware within Windows OS to evaluate our approach’s effectiveness across various scenarios, including those with adversarial data generated from five white-box attacks, including Fast Gradient Sign Method (FGSM), Projected Gradient Descent (PGD)10, PGD100, DeepFool, Carlini and Wagner (CW) and one black-box attack Auxiliary Classifier Generative Adversarial Networks (ACGAN). Additionally, we assess our approach with non-adversarial data to demonstrate its effectiveness in adversarial detection without compromising non-adversarial performance. The results obtained from the real-world dataset indicate enhanced robustness and minimal overhead, offering a proactive solution to adversarial threats in MDS. This approach outperforms retraining defense method in five white-box attacks and also indicates better performance in non-adversarial scenarios.
World Scientific Pub Co Pte Ltd
Title: ProDef-MDS: A Proactive Defense Mechanism Protecting Malware Detection Systems from Adversarial Attacks
Description:
Malware threatens cybersecurity by enabling data theft, unauthorized access, and extortion.
Traditional malware detection systems (MDS) struggle with the increasing volume and complexity of malware.
While machine learning (ML) and deep learning (DL) offer promising solutions, they remain vulnerable to adversarial attacks that evade detection.
Recent research focuses on developing adversarial datasets to retrain ML/DL-based malware detection systems, enhancing their robustness against adversarial attacks.
While these methods improve detection of adversarial samples, they also cause more misclassification of non-adversarial data due to overfitting.
These methods lack scalability when ML/DL-based MDS are retrained in isolation, without utilizing knowledge from other MDS with retrained models, leading to inefficiency and waste.
To tackle these issues, we introduce ProDef-MDS, a proactive defense system that integrates an Adversarial Restoration (AR) module to mitigate adversarial perturbations and recover inputs to a correctly classifiable form before passing them into the malware classification model.
We focus on portable executable (PE) malware within Windows OS to evaluate our approach’s effectiveness across various scenarios, including those with adversarial data generated from five white-box attacks, including Fast Gradient Sign Method (FGSM), Projected Gradient Descent (PGD)10, PGD100, DeepFool, Carlini and Wagner (CW) and one black-box attack Auxiliary Classifier Generative Adversarial Networks (ACGAN).
Additionally, we assess our approach with non-adversarial data to demonstrate its effectiveness in adversarial detection without compromising non-adversarial performance.
The results obtained from the real-world dataset indicate enhanced robustness and minimal overhead, offering a proactive solution to adversarial threats in MDS.
This approach outperforms retraining defense method in five white-box attacks and also indicates better performance in non-adversarial scenarios.
Related Results
Dynamic Features for Robust Malware Detection: A Systematic Review, Taxonomy, and Practical Analysis Framework
Dynamic Features for Robust Malware Detection: A Systematic Review, Taxonomy, and Practical Analysis Framework
The need to mitigate malware attacks cannot be overemphasized, as they pose serious threats to the critical information assets in cyberspace. Understanding and utilizing appropriat...
Mechanism of Action of Azacytidine in Myelodysplastic Syndromes (MDS)
Mechanism of Action of Azacytidine in Myelodysplastic Syndromes (MDS)
Abstract
Introduction: Myelodysplastic syndromes (MDS) have historically been classified as a set of heterogeneous hematopoietic stem cell (HSC) disorders, which are...
Categorizing Molecular Mutations in MDS and AML
Categorizing Molecular Mutations in MDS and AML
Abstract
Introduction:
A huge amount of data on genetic alterations has been compiled by high throughput sequencing studies in several hematologic mal...
FAS Gene Expression Is Epigenetically Regulated and Predicts the Responsiveness to Azacitidine In High-Risk Myelodysplastic Syndromes
FAS Gene Expression Is Epigenetically Regulated and Predicts the Responsiveness to Azacitidine In High-Risk Myelodysplastic Syndromes
Abstract
Abstract 232
Background:
Low risk myelodysplastic syndromes (MDS) CD34-positive cells exhibit high level...
Development and Exploitation of a Fully Human and Modular Organotypic Bone Marrow Niche Model to Study the Role of Stroma-Produced Factors in Human MDS
Development and Exploitation of a Fully Human and Modular Organotypic Bone Marrow Niche Model to Study the Role of Stroma-Produced Factors in Human MDS
Background: Myelodysplastic syndromes (MDS) are a heterogenous group of stem cell driven disorders primarily affecting the elderly and characterized by inefficient production of ma...
Impairment of HuR-Mediated FOS mRNA Stabilization in Granulocytes From Myelodysplastic Syndrome Patients.
Impairment of HuR-Mediated FOS mRNA Stabilization in Granulocytes From Myelodysplastic Syndrome Patients.
Abstract
Abstract 2805
Infection is a major cause of death in patients with myelodysplastic syndromes (MDS). Although qualitative and quantitative gra...
Prognostic Impact of Multiparameter Flow Cytometry in Patients Analyzed for Suspected MDS.
Prognostic Impact of Multiparameter Flow Cytometry in Patients Analyzed for Suspected MDS.
Abstract
Abstract 2806
Background:
Multiparameter flow cytometry (MFC) is increasingly used to evaluate patients ...
High Incidence of TET2 Mutation in Chinese Patients with MDS and AML with Previous History of MDS
High Incidence of TET2 Mutation in Chinese Patients with MDS and AML with Previous History of MDS
Abstract
Abstract 4943
Myelodysplastic syndromes(MDS) are a heterogeneous group of myeloid neoplasms characterized by cytopenia, dysplasia in one or m...

