paper-with-me

Papers

CyberForce: A Federated Reinforcement Learning Framework for Malware Mitigation

2023-08-11 · Chao Feng, Alberto Huertas Celdran, Pedro Miguel Sanchez Sanchez, Jan Kreischer, Jan von der Assen, Gerome Bovet, Gregorio Martinez Perez, Burkhard Stiller

Recent research has shown that the integration of Reinforcement Learning (RL) with Moving Target Defense (MTD) can enhance cybersecurity in Internet-of-Things (IoT) devices. Nevertheless, the practicality of existing work is hindered by data privacy concerns associated with centralized data processing in RL, and the unsatisfactory time needed to learn right MTD techniques that are effective against a rising number of heterogeneous zero-day attacks. Thus, this work presents CyberForce, a framework that combines Federated and Reinforcement Learning (FRL) to collaboratively and privately learn suitable MTD techniques for mitigating zero-day attacks. CyberForce integrates device fingerprinting and anomaly detection to reward or penalize MTD mechanisms chosen by an FRL-based agent. The framework has been deployed and evaluated in a scenario consisting of ten physical devices of a real IoT platform affected by heterogeneous malware samples. A pool of experiments has demonstrated that CyberForce learns the MTD technique mitigating each attack faster than existing RL-based centralized approaches. In addition, when various devices are exposed to different attacks, CyberForce benefits from knowledge transfer, leading to enhanced performance and reduced learning time in comparison to recent works. Finally, different aggregation algorithms used during the agent learning process provide CyberForce with notable robustness to malicious attacks.

📄 PDF Abstract BibTeX arXiv:2308.05978

Code (0)

등록된 구현이 없습니다.

Tasks

Anomaly DetectionData Poisoningreinforcement-learningReinforcement LearningReinforcement Learning (RL)Transfer Learning

Similar Papers 제목 키워드 기반

A Hybrid Approach For Malware Classification Using Secondary Features Fusion

2026-06-02 · Raja Khurram Shahzad, Muhammad Mustaqeem, Haroon Elahi arxiv

The number of malware (either variant or novel) is rapidly increasing, making malware detection and mitigation a complex problem. One approach to improving malware mitigation is automatic detection and malware family cla…

Multi-class ClassificationMalware ClassificationMalware Detection

DRMD: Deep Reinforcement Learning for Malware Detection under Concept Drift

2025-08-26 · Shae McFadden, Myles Foley, Mario D'Onghia, Chris Hicks 외 arxiv

Malware detection in real-world settings must deal with evolving threats, limited labeling budgets, and uncertain predictions. Traditional classifiers, without additional mechanisms, struggle to maintain performance unde…

Reinforcement LearningMalware DetectionActive Learning

CELEST: Federated Learning for Globally Coordinated Threat Detection

2022-05-23 · Talha Ongun, Simona Boboila, Alina Oprea, Tina Eliassi-Rad 외

The cyber-threat landscape has evolved tremendously in recent years, with new threat variants emerging daily, and large-scale coordinated campaigns becoming more prevalent. In this study, we propose CELEST (CollaborativE…

Active LearningFederated Learning

Federated Learning for Malware Detection in IoT Devices

2021-04-15 · Valerian Rey, Pedro Miguel Sánchez Sánchez, Alberto Huertas Celdrán, Gérôme Bovet 외

This work investigates the possibilities enabled by federated learning concerning IoT malware detection and studies security issues inherent to this new learning paradigm. In this context, a framework that uses federated…

Federated LearningMalware Detection

Do You Trust Your Model? Emerging Malware Threats in the Deep Learning Ecosystem

2024-03-06 · Dorjan Hitaj, Giulio Pagnotta, Fabio De Gaspari, Sediola Ruko 외

Training high-quality deep learning models is a challenging task due to computational and technical requirements. A growing number of individuals, institutions, and companies increasingly rely on pre-trained, third-party…

Federated Learning