IEEE Access (Jan 2019)

How to Make Attention Mechanisms More Practical in Malware Classification

  • Xin Ma,
  • Shize Guo,
  • Haiying Li,
  • Zhisong Pan,
  • Junyang Qiu,
  • Yu Ding,
  • Feiqiong Chen

DOI
https://doi.org/10.1109/ACCESS.2019.2948358
Journal volume & issue
Vol. 7
pp. 155270 – 155280

Abstract

Read online

Malware and its variants continue to pose a threat to network security. Machine learning has been widely used in the field of malware classification, but some emerging studies, such as attention mechanisms, are rarely applied in this field. In this paper, we analyze the correspondence between bytecode and disassembly of malware, and propose a new feature extraction method based on multi-dimensional sequence. Also, we construct a new classification framework based on attention mechanism and Convolutional Neural Networks mechanism. Furthermore, we also compare the different architectures based on the attention mechanisms. Experiments on open datasets show that our feature extraction method and our framework have a good classification effect, and the accuracy rate is 0.9609.

Keywords