• KSII Transactions on Internet and Information Systems
    Monthly Online Journal (eISSN: 1976-7277)

Resilience against Adversarial Examples: Data-Augmentation Exploiting Generative Adversarial Networks


Abstract

Recently, malware classification based on Deep Neural Networks (DNN) has gained significant attention due to the rise in popularity of artificial intelligence (AI). DNN-based malware classifiers are a novel solution to combat never-before-seen malware families because this approach is able to classify malwares based on structural characteristics rather than requiring particular signatures like traditional malware classifiers. However, these DNN-based classifiers have been found to lack robustness against malwares that are carefully crafted to evade detection. These specially crafted pieces of malware are referred to as adversarial examples. We consider a clever adversary who has a thorough knowledge of DNN-based malware classifiers and will exploit it to generate a crafty malware to fool DNN-based classifiers. In this paper, we propose a DNN-based malware classifier that becomes resilient to these kinds of attacks by exploiting Generative Adversarial Network (GAN) based data augmentation. The experimental results show that the proposed scheme classifies malware, including AEs, with a false positive rate (FPR) of 3.0% and a balanced accuracy of 70.16%. These are respective 26.1% and 18.5% enhancements when compared to a traditional DNN-based classifier that does not exploit GAN.


Statistics

Show / Hide Statistics

Statistics (Cumulative Counts from December 1st, 2015)
Multiple requests among the same browser session are counted as one view.
If you mouse over a chart, the values of data points will be shown.


Cite this article

[IEEE Style]
M. Kang, H. Kim, S. Lee and S. Han, "Resilience against Adversarial Examples: Data-Augmentation Exploiting Generative Adversarial Networks," KSII Transactions on Internet and Information Systems, vol. 15, no. 11, pp. 4105-4121, 2021. DOI: 10.3837/tiis.2021.11.013.

[ACM Style]
Mingu Kang, HyeungKyeom Kim, Suchul Lee, and Seokmin Han. 2021. Resilience against Adversarial Examples: Data-Augmentation Exploiting Generative Adversarial Networks. KSII Transactions on Internet and Information Systems, 15, 11, (2021), 4105-4121. DOI: 10.3837/tiis.2021.11.013.

[BibTeX Style]
@article{tiis:25105, title="Resilience against Adversarial Examples: Data-Augmentation Exploiting Generative Adversarial Networks", author="Mingu Kang and HyeungKyeom Kim and Suchul Lee and Seokmin Han and ", journal="KSII Transactions on Internet and Information Systems", DOI={10.3837/tiis.2021.11.013}, volume={15}, number={11}, year="2021", month={November}, pages={4105-4121}}