Towards A Framework for Preprocessing Analysis of Adversarial Windows Malware


연구 분야: Safety



학회: 2022 10th International Symposium on Digital Forensics and Security (ISDFS)


초록

Machine learning for malware detection and classification has shown promising results. However, motivated adversaries can thwart such classifiers by perturbing the classifier’s input features. Feature perturbation can be realized by transforming the malware, inducing an adversarial drift in the problem space. Realizable adversarial malware is constrained by available software transformations that preserve the malware’s original semantics yet perturb its features enough to cross a classifier’s decision boundary. Further, transformations should be plausible and robust to preprocessing. If a defender can identify and filter the adversarial noise, then the utility of the adversarial approach is decreased. In this paper, we examine common adversarial techniques against a set of constraints that expose each technique’s realizability. Our observations indicate that most adversarial perturbations can be reduced through forensic preprocessing of the malware, highlighting the advantage of forensic analysis prior to classification.


Author Profile
Nicholas Schultz

United States Military Academy West Point NY USA

United States
Author Profile
Adam Duby

United States Military Academy West Point NY USA

United States

📄 논문 정보

발행 연도 2022년
인용수 1
출판 국가 United States
사이트 IEEE
좋아요 수 0

연관 논문 목록 (417건)