Sequential opcode embedding-based malware detection method

dc.contributor.authorKakışım, Arzu Görgülü
dc.contributor.authorGülmez, Sibel
dc.contributor.authorSoğukpınar, İbrahim
dc.date.accessioned2022-10-25T07:06:20Z
dc.date.available2022-10-25T07:06:20Z
dc.date.issued2022en_US
dc.departmentFakülteler, Mühendislik Fakültesi, Bilgisayar Mühendisliği Bölümüen_US
dc.description.abstractIn recent years, researchers have focused on uncovering the distinctive malicious patterns of malware samples through opcode sequences using some feature learning methods to improve the accuracy of malware detection mechanisms. However, opcode sequences are often very long. Thus, the feature learning process is to be time-consuming when using the entire sequence or could be ineffective when only a partial part of the sequence is used. In this work, we propose a new malware detection approach, called Sequential Opcode Embedding-based Malware Detection (SOEMD), which aims at capturing common malicious patterns in sequential opcodes. To avoid dealing with the long opcode sequences, SOEMD uses Random walk approach with edge and node selection processes. The proposed method constructs a new vector space that consists of low-dimensional sequential opcode embeddings using an embedding method. Experimental results demonstrate that SOEMD outperforms the baseline methods and provides 100% malware detection.en_US
dc.identifier.doi10.1016/j.compeleceng.2022.107703en_US
dc.identifier.scopus2-s2.0-85123243528en_US
dc.identifier.scopusqualityN/Aen_US
dc.identifier.urihttps://hdl.handle.net/11467/5372
dc.identifier.urihttps://doi.org/10.1016/j.compeleceng.2022.107703
dc.identifier.volume98en_US
dc.identifier.wosWOS:000754590300009en_US
dc.identifier.wosqualityQ2en_US
dc.indekslendigikaynakWeb of Scienceen_US
dc.indekslendigikaynakScopusen_US
dc.language.isoenen_US
dc.publisherElsevieren_US
dc.relation.ispartofComputers and Electrical Engineeringen_US
dc.relation.publicationcategoryMakale - Uluslararası Hakemli Dergi - Kurum Öğretim Elemanıen_US
dc.rightsinfo:eu-repo/semantics/embargoedAccessen_US
dc.subjectMalware detectionen_US
dc.subjectOpcode sequenceen_US
dc.subjectEmbeddingen_US
dc.subjectRandom walken_US
dc.subjectStatic analysisen_US
dc.subjectOpcode graphen_US
dc.titleSequential opcode embedding-based malware detection methoden_US
dc.typeArticleen_US

Dosyalar

Orijinal paket
Listeleniyor 1 - 1 / 1
Yükleniyor...
Küçük Resim
İsim:
1-s2.0-S0045790622000210-main.pdf
Boyut:
740.39 KB
Biçim:
Adobe Portable Document Format
Açıklama:
Lisans paketi
Listeleniyor 1 - 1 / 1
Küçük Resim Yok
İsim:
license.txt
Boyut:
1.56 KB
Biçim:
Item-specific license agreed upon to submission
Açıklama: