Active Stocks
Tue Apr 16 2024 15:59:30
  1. Tata Steel share price
  2. 160.05 -0.53%
  1. Infosys share price
  2. 1,414.75 -3.65%
  1. NTPC share price
  2. 359.40 -0.54%
  1. State Bank Of India share price
  2. 751.90 -0.65%
  1. HDFC Bank share price
  2. 1,509.40 0.97%
Business News/ Technology / News/  How deep learning can be used to detect malware using 2D images
BackBack

How deep learning can be used to detect malware using 2D images

Microsoft and Intel have found a way to use images to detect malware attacks
  • Image-based technique used on x86 program binaries, achieved 99.07% accuracy with 2.58% false positive rate
  • Due to growing number of malwares and signatures, matching signature has become challenging. (iStock Photo)Premium
    Due to growing number of malwares and signatures, matching signature has become challenging. (iStock Photo)

    NEW DELHI: Manipulating images to hide malware is common. Once the image is opened on a system, the malware loader starts the decryption process. The decrypted file is then loaded on to the device memory triggering a malware attack.

    Now, Microsoft and Intel have found a way to use images to detect malware attacks.

    Intel Labs and Microsoft Threat Protection Intelligence are collaborating on a project named Static Malware-as-Image Network Analysis (STAMINA), which will turn any malicious code into images and use deep learning models to study them.

    Classical malware detection approaches involve extracting binary signatures or fingerprints of the malware. However, due to growing number of malwares and signatures, matching signature has become challenging.

    The other approaches include static and dynamic analysis. The former analyses the malware without executing it, but its performance can suffer from code obfuscation. The latter executes the malware in an sandbox to analyse it. It is effective but can be more time consuming.

    That is where researchers turned to image-based transfer learning approach for static malware classification, using real-world data set. They used a Microsoft dataset of 2.2 million hashes of malware binaries and 10 columns of data.

    A combination of known malware, potentially unwanted applications and unknown binaries with no known history were taken and converted into a stream of raw pixel data.

    This one-dimensional pixel stream was then converted into a two-dimensional or 2D image to allow image analysis algorithms to work on them. The width and height were figured out by the file size after converting to pixel stream, following an empirically validated table.

    Image height is calculated as the number of pixels divided by the width. After reshaping, the images were resized for transfer learning techniques.

    Resizing does not adversely impact the classification result, since the system trains a very deep neural network to extract the deep-represented features, researches pointed out.

    The 2D images were then fed into a deep neural network (DNN) that was trained using 60% of known malware samples. The DNN would scan and identify the image as clean or infected.

    According to researchers, image-based technique used on x86 program binaries, achieved 99.07% accuracy with 2.58% false positive rate.

    The study further showed that samples allowed all characteristics of the malwares to be captured during training. However, for applications of bigger size, STAMINA may not be fully effective as the software cannot convert billions of pixels into JPEG images and then resize them.

    That is where meta-data-based methods can be more reliable over sample-based models.

    Unlock a world of Benefits! From insightful newsletters to real-time stock tracking, breaking news and a personalized newsfeed – it's all here, just a click away! Login Now!

    ABOUT THE AUTHOR
    Abhijit Ahaskar
    Abhijit writes on tech policy, gaming, security, AI, robotics, electronics and startups. He has been in the media industry for over 12 years.
    Catch all the Technology News and Updates on Live Mint. Download The Mint News App to get Daily Market Updates & Live Business News.
    More Less
    Published: 12 May 2020, 02:22 PM IST
    Next Story footLogo
    Recommended For You
    Switch to the Mint app for fast and personalized news - Get App