On a Bayesian Approach to Malware Detection and Classification through n-gram Profiles

11/23/2020
by   José A. Perusquía, et al.
0

Detecting and correctly classifying malicious executables has become one of the major concerns in cyber security, especially because traditional detection systems have become less effective with the increasing number and danger of threats found nowadays. One way to differentiate benign from malicious executables is to leverage on their hexadecimal representation by creating a set of binary features that completely characterise each executable. In this paper we present a novel supervised learning Bayesian nonparametric approach for binary matrices, that provides an effective probabilistic approach for malware detection. Moreover, and due to the model's flexible assumptions, we are able to use it in a multi-class framework where the interest relies in classifying malware into known families. Finally, a generalisation of the model which provides a deeper understanding of the behaviour across groups for each feature is also developed.

READ FULL TEXT

page 18

page 24

page 25

page 26

page 27

research
03/02/2019

Detecting and Classifying Android Malware using Static Analysis along with Creator Information

Thousands of malicious applications targeting mobile devices, including ...
research
09/22/2018

DeepOrigin: End-to-End Deep Learning for Detection of New Malware Families

In this paper, we present a novel method of differentiating known from p...
research
08/15/2022

Self-Supervised Vision Transformers for Malware Detection

Malware detection plays a crucial role in cyber-security with the increa...
research
11/10/2021

A framework for comprehensible multi-modal detection of cyber threats

Detection of malicious activities in corporate environments is a very co...
research
09/01/2023

Cross-temporal Detection of Novel Ransomware Campaigns: A Multi-Modal Alert Approach

We present a novel approach to identify ransomware campaigns derived fro...
research
06/23/2023

Full Transparency in DBI frameworks

Following the increasing trends of malicious applications or cyber threa...
research
12/27/2018

Malicious Software Detection and Classification utilizing Temporal-Graphs of System-call Group Relations

In this work we propose a graph-based model that, utilizing relations be...

Please sign up or login with your details

Forgot password? Click here to reset