AIセキュリティポータル K Program
Obfuscated Memory Malware Detection
Share
Abstract
Providing security for information is highly critical in the current era with devices enabled with smart technology, where assuming a day without the internet is highly impossible. Fast internet at a cheaper price, not only made communication easy for legitimate users but also for cybercriminals to induce attacks in various dimensions to breach privacy and security. Cybercriminals gain illegal access and breach the privacy of users to harm them in multiple ways. Malware is one such tool used by hackers to execute their malicious intent. Development in AI technology is utilized by malware developers to cause social harm. In this work, we intend to show how Artificial Intelligence and Machine learning can be used to detect and mitigate these cyber-attacks induced by malware in specific obfuscated malware. We conducted experiments with memory feature engineering on memory analysis of malware samples. Binary classification can identify whether a given sample is malware or not, but identifying the type of malware will only guide what next step to be taken for that malware, to stop it from proceeding with its further action. Hence, we propose a multi-class classification model to detect the three types of obfuscated malware with an accuracy of 89.07% using the Classic Random Forest algorithm. To the best of our knowledge, there is very little amount of work done in classifying multiple obfuscated malware by a single model. We also compared our model with a few state-of-the-art models and found it comparatively better.
The Evolution of Cryptocurrency and Cyber Attacks
H. S. Berry
Published: 2022
AntiViruses under the microscope: A hands-on perspective
M. Botacin
Published: 2022
Malware obfuscation techniques: A brief survey
I. You, K. Yim
Published: 2010
Protecting Software through Obfuscation
S. Schrittwieser, S. Katzenbeisser, J. Kinder, G. Merzdovnik, E. Weippl
Published: 2017
SubVirt: implementing malware with virtual machines
S. T. King, P. M. Chen
Published: 2006
ERMDS: A obfuscation dataset for evaluating robustness of learning-based malware detection system
L. Jia, Y. Yang, B. Tang, Z. Jiang
Published: 2023
Detecting obfuscated malware using memory feature engineering
T. Carrier, P. Victor, A. Tekeoglu, A. H. Lashkari
Published: 2022
Detection of Obfuscated Malware by Engineering Memory Functions Applying ELM
L. Igor Moraga, J. P. R. Malcó, D. Zabala-Blanco, R. Ahumada-García, C. A. Azurdia-Meza, A. D. Firoozabadi
Published: 2023
Obfuscated malware detection using dilated convolutional network
A. Mezina, R. Burget
Published: 2022
Obfuscated Malware Detection Using Artificial Neural Network (ANN)
L. P. Khan
Published: 2023
Machine Learning Based Obfuscated Malware Detection in the Cloud Environment with Nature-Inspired Feature Selection
M. R. Ghazi, N. S. Raghava
Published: 2022
Enhancing the Insertion of NOP Instructions to Obfuscate Malware via Deep Reinforcement Learning
Daniel Gibert, Matt Fredrikson, Carles Mateu, Jordi Planes, Quan Le
Published: 2021.11.18
DOOM: A novel adversarial-DRL-based op-code level metamorphic malware obfuscator for the enhancement of IDS
M. Sewak, S. K. Sahay, H. Rathore
Published: 2020
Malicious Software Family Classification using Machine Learning Multi-class Classifiers
C. C. San, M. M. S. Thwin, N. L. Htun
Published: 2019
Share