We gratefully acknowledge support from
the Simons Foundation and member institutions.
Full-text links:

Download:

Current browse context:

cs.CR

Change to browse by:

References & Citations

DBLP - CS Bibliography

Bookmark

(what is this?)
CiteULike logo BibSonomy logo Mendeley logo del.icio.us logo Digg logo Reddit logo

Computer Science > Cryptography and Security

Title: Exploring Optimal Deep Learning Models for Image-based Malware Variant Classification

Abstract: Analyzing a huge amount of malware is a major burden for security analysts. Since emerging malware is often a variant of existing malware, automatically classifying malware into known families greatly reduces a part of their burden. Image-based malware classification with deep learning is an attractive approach for its simplicity, versatility, and affinity with the latest technologies. However, the impact of differences in deep learning models and the degree of transfer learning on the classification accuracy of malware variants has not been fully studied. In this paper, we conducted an exhaustive survey of deep learning models using 24 ImageNet pre-trained models and five fine-tuning parameters, totaling 120 combinations, on two platforms. As a result, we found that the highest classification accuracy was obtained by fine-tuning one of the latest deep learning models with a relatively low degree of transfer learning, and we achieved the highest classification accuracy ever in cross-validation on the Malimg and Drebin datasets. We also confirmed that this trend holds true for the recent malware variants using the VirusTotal 2020 Windows and Android datasets. The experimental results suggest that it is effective to periodically explore optimal deep learning models with the latest models and malware datasets by gradually reducing the degree of transfer learning from half.
Comments: 11 pages with 10figures. This is the accepted version of the paper published in IEEE COMPSAC 2022. The published version is available at this http URL
Subjects: Cryptography and Security (cs.CR); Machine Learning (cs.LG)
DOI: 10.1109/COMPSAC54236.2022.00128
Cite as: arXiv:2004.05258 [cs.CR]
  (or arXiv:2004.05258v2 [cs.CR] for this version)

Submission history

From: Takahiro Shinagawa [view email]
[v1] Fri, 10 Apr 2020 23:45:54 GMT (730kb)
[v2] Sun, 23 Oct 2022 16:08:12 GMT (3142kb,D)

Link back to: arXiv, form interface, contact.