Mobile security is an important issue on Android platform. Most malware detection methods based on machine learning models heavily rely on expert knowledge for manual feature engineering, which are still difficult to fully describe malwares. In this paper, we present LSTM-based hierarchical denoise network (HDN), a novel static Android malware detection method which uses LSTM to directly learn from the raw opcode sequences extracted from decompiled Android files. However, most opcode sequences are too long for LSTM to train due to the gradient vanishing problem. Hence, HDN uses a hierarchical structure, whose first-level LSTM parallelly computes on opcode subsequences (we called them method blocks) to learn the dense representations; then the second-level LSTM can learn and detect malware through method block sequences. Considering that malicious behavior only appears in partial sequence segments, HDN uses method block denoise module (MBDM) for data denoising by adaptive gradient scaling strategy based on loss cache. We evaluate and compare HDN with the latest mainstream researches on three datasets. The results show that HDN outperforms these Android malware detection methods,and it is able to capture longer sequence features and has better detection efficiency than -gram-based malware detection which is similar to our method.
from #AlexandrosSfakianakis via Alexandros G.Sfakianakis on Inoreader http://ift.tt/2CS8LYB
via IFTTT
Εγγραφή σε:
Σχόλια ανάρτησης (Atom)
Δημοφιλείς αναρτήσεις
-
from #Medicine-SfakianakisAlexandros via o.lakala70 on Inoreader https://ift.tt/2Gchesc via IFTTT
-
Abstract Determining the cause of unexplained death in all age groups, including infants, is a priority in forensic medicine. The triple r...
-
from #Medicine-SfakianakisAlexandros via o.lakala70 on Inoreader https://ift.tt/2BeOBVJ via IFTTT
-
Abstract Layer-by-layer (LbL) dip coating, accompanying with the use of micelle structure, allows hydrophobic molecules to be coated on me...
-
from #Medicine-SfakianakisAlexandros via o.lakala70 on Inoreader https://ift.tt/2rxuJIO via IFTTT
-
Abstract In this paper we present the study of a skull belonging to a young male from the Italian Bronze Age showing three perimortem inju...
-
Find out more about the wide range of A Levels and full time courses available at Longley Park Sixth Form College, the only independent Sixt...
-
Abstract To measure integral doses in image-guided radiation therapy, we developed an integral condenser dosimeter comprising a disposable...
-
Objectives. To assess the association between short-term postoperative cognitive dysfuction (POCD) and inflammtory response in patients unde...
Δεν υπάρχουν σχόλια:
Δημοσίευση σχολίου