• Home
  • Search
  • Adversarial Robustness of Image Based Android Malware Detection Models
  • Cite Icon4
  • https://doi.org/10.1007/978-3-030-97532-6_1Copy DOI Icon

Adversarial Robustness of Image Based Android Malware Detection Models

  • Jan 1, 2022
  • Hemant Rathore +3 more
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Abstract The last five years have shown a tremendous increase in the number of Android smartphone users. So has been the case with malicious Android applications that aim to jeopardize user data, security, and privacy. Most existing Android malware detection engines find it challenging to keep up with the pace of incoming malware and their sophistication of evasion techniques against the detection engines. This has prompted researchers to delve into using machine learning and deep learning algorithms to construct state-of-the-art malware detection models. However, research indicates that these detection models might be vulnerable to adversarial attacks prompting a thorough investigation. Therefore, we first propose a image based malware detection pipeline that uses an embedding layer-based hybrid CNN named E-CNN that uses Android permissions and intents as features for malware detection. The permission and intent based E-CNN detection models achieved baseline accuracy of \(93.48\%\) and \(76.7\%\) respectively. We then act as an adversary and propose the ECO-FGSM adversarial evasion attack against the above detection models. The ECO-FGSM attack converts malware samples into adversarial malware samples so that they are forcefully misclassified as benign by the detection models. The proposed attack achieved a high fooling rate of \(55.72\%\) and \(99.97\%\) against permission and intent based E-CNN detection models, respectively. We also identified a list of most vulnerable permissions and intents to generate adversarial samples. We then use adversarial retraining as a defense strategy to counter the ECO-FGSM attack against the detection models. The adversarial defense helped improve the baseline accuracies of permission and intent based E-CNN detection models by \(3.41\%\) and \(11.4\%\), respectively. We re-attack the adversarially retrained models using the ECO-FGSM attack to validate their adversarial robustness. We found a reduction in the fooling rate by \(23.28\%\) and \(97.55\%\) against permission and intent-based E-CNN detection models, respectively. Finally, we conclude that investigating the adversarial robustness of the malware detection models is an essential step that helps improve their performance and robustness before real-world deployment. KeywordsAndroidAdversarial robustnessConvolutional Neural NetworkEvasion attackMalware detection

Similar Papers
  • Research Article
  • Citations4

Defending malware detection models against evasion based adversarial attacks

  • Dec 01, 2022
  • Pattern Recognition Letters
  • Hemant Rathore +3
  • Conference Article
  • Citations4

Designing Adversarial Attack and Defence for Robust Android Malware Detection Models

  • Jun 01, 2021
  • Hemant Rathore +3
  • Research Article

Malware Detection System using Machine Learning Techniques

  • May 20, 2025
  • INTERNATIONAL JOURNAL OF SCIENTIFIC RESEARCH IN ENGINEERING AND MANAGEMENT
  • Deeksha Pal¹
  • Book Chapter
  • Citations5

Permission-Based Feature Scaling Method for Lightweight Android Malware Detection

  • Jan 01, 2019
  • Dali Zhu +1
  • Research Article
  • Citations92

A Malware Detection Approach Using Autoencoder in Deep Learning

  • Jan 01, 2022
  • IEEE Access
  • Xiaofei Xing +4
  • Research Article
  • Citations26

HybriDroid: an empirical analysis on effective malware detection model developed using ensemble methods

  • Jan 18, 2021
  • The Journal of Supercomputing
  • Arvind Mahindru +1
  • Conference Article
  • Citations3

Malware Detection and Classification along with Trade-off Analysis for Number of Features, Feature Types, and Speed

  • Dec 01, 2021
  • Duaa Baig +5
  • Research Article
  • Citations14

Minimized feature overhead malware detection machine learning model employing MRMR‐based ranking

  • Mar 30, 2022
  • Concurrency and Computation: Practice and Experience
  • Priyanka Singh +3
  • Dissertation
  • Citations1

Intelligent Malware Detection Using File-to-file Relations and Enhancing its Security against Adversarial Attacks

  • May 03, 2019
  • Lingwei Chen
  • Research Article
  • Citations31

A Comprehensive Analysis of Explainable AI for Malware Hunting

  • Oct 03, 2024
  • ACM Computing Surveys
  • Mohd Saqib +3
  • Research Article
  • Citations21

Defending Hardware-Based Malware Detectors Against Adversarial Attacks

  • Sep 29, 2020
  • IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems
  • Abraham Peedikayil Kuruvila +2
  • PDF
  • Research Article

A review of black-box adversarial attacks and defenses in machine learning-based malware detection

  • Sep 02, 2024
  • Applied and Computational Engineering
  • Jiaxiang Chen
  • Research Article
  • Citations40

A multi-tiered feature selection model for android malware detection based on Feature discrimination and Information Gain

  • Nov 27, 2021
  • Journal of King Saud University - Computer and Information Sciences
  • Parnika Bhat +1
  • Research Article
  • Citations28

Time-interval temporal patterns can beat and explain the malware

  • Jan 29, 2022
  • Knowledge-Based Systems
  • Ido Finder +2
  • Research Article
  • Citations8

Adversarial Robustness of Deep Convolutional Neural Network-based Image Recognition Models: A Review

  • Aug 28, 2021
  • 雷达学报
  • Hao Sun +4
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.