FiFTy: Large-scale File Fragment Type Identification using Neural Networks

08/16/2019
by   Govind Mittal, et al.
0

We present FiFTy, a modern file type identification tool for memory forensics and data carving. In contrast to previous approaches based on hand-crafted features, we design a compact neural network architecture, which uses a trainable embedding space, akin to successful natural language processing models. Our approach dispenses with explicit feature extraction which is a bottleneck in legacy systems. We evaluate the proposed method on a novel dataset with 75 file types - the most diverse and balanced dataset reported to date. FiFTy consistently outperforms all baselines in terms of speed, accuracy and individual misclassification rates. We achieved an average accuracy of 77.5 an order of magnitude faster than the previous state-of-the-art tool - Sceadan (69 publicly online.

READ FULL TEXT

page 24

page 25

research
02/17/2010

A new approach to content-based file type detection

File type identification and file type clustering may be difficult tasks...
research
04/13/2022

A Natural Language Processing Approach for Instruction Set Architecture Identification

Binary analysis of software is a critical step in cyber forensics applic...
research
10/26/2018

Magnitude: A Fast, Efficient Universal Vector Embedding Utility Package

Vector space embedding models like word2vec, GloVe, fastText, and ELMo a...
research
05/01/2023

File Fragment Classification using Light-Weight Convolutional Neural Networks

In digital forensics, file fragment classification is an important step ...
research
11/05/2016

Neural Architecture Search with Reinforcement Learning

Neural networks are powerful and flexible models that work well for many...
research
11/13/2020

Better, Faster Fermionic Neural Networks

The Fermionic Neural Network (FermiNet) is a recently-developed neural n...
research
10/09/2016

Interpreting Neural Networks to Improve Politeness Comprehension

We present an interpretable neural network approach to predicting and un...

Please sign up or login with your details

Forgot password? Click here to reset