Online Learning Based Self-updating Incremental Malware Detection Model.

Donghui Zhao,Liang Kou,Jilin Zhang
DOI: https://doi.org/10.1109/dsa56465.2022.00145
2022-01-01
Abstract:With the rapid evolution of machine learning technology, ML-based malware detection is widely accepted as a panacea towards effective malware de-tection. However, facing with the great number of detecion system, malware can always breakthrough. It is chanllenging for the train models to detect a malware that newly show up. This phenomenon is widely known as concept drift. To address this chal-lenge, we proposed a online learning based malware detection system, which is based on the API sequences generated by the processes when it is running and also able to recognize concept drift. The sustainbility of detection system can be significantly improved with online learning algorithms. Lastly, in order to detect malware as much as possible, we use the incremental model structure.
What problem does this paper attempt to address?