paper-with-me

홈 › Papers

EGAN: Evolutional GAN for Ransomware Evasion

2024-05-20 · Daniel Commey, Benjamin Appiah, Bill K. Frimpong, Isaac Osei, Ebenezer N. A. Hammond, Garth V. Crosby

Adversarial Training is a proven defense strategy against adversarial malware. However, generating adversarial malware samples for this type of training presents a challenge because the resulting adversarial malware needs to remain evasive and functional. This work proposes an attack framework, EGAN, to address this limitation. EGAN leverages an Evolution Strategy and Generative Adversarial Network to select a sequence of attack actions that can mutate a Ransomware file while preserving its original functionality. We tested this framework on popular AI-powered commercial antivirus systems listed on VirusTotal and demonstrated that our framework is capable of bypassing the majority of these systems. Moreover, we evaluated whether the EGAN attack framework can evade other commercial non-AI antivirus solutions. Our results indicate that the adversarial ransomware generated can increase the probability of evading some of them.

📄 PDF Abstract BibTeX arXiv:2405.12266

Code (0)

등록된 구현이 없습니다.

Tasks

Generative Adversarial Network

Similar Papers 제목 키워드 기반

Minerva: A File-Based Ransomware Detector

2023-01-26 · Dorjan Hitaj, Giulio Pagnotta, Fabio De Gaspari, Lorenzo De Carli 외

Ransomware attacks have caused billions of dollars in damages in recent years, and are expected to cause billions more in the future. Consequently, significant effort has been devoted to ransomware detection and mitigati…

feature selection

The Naked Sun: Malicious Cooperation Between Benign-Looking Processes

2019-11-06 · Fabio De Gaspari, Dorjan Hitaj, Giulio Pagnotta, Lorenzo De Carli 외

Recent progress in machine learning has generated promising results in behavioral malware detection. Behavioral modeling identifies malicious processes via features derived by their runtime behavior. Behavioral features …

Behavioral Malware DetectionMalware Detection

Entropy-Synchronized Neural Hashing for Unsupervised Ransomware Detection

2025-01-30 · Peter Idliman, Wilfred Balfour, Benedict Featheringham, Hugo Chesterfield

Entropy-based detection methodologies have gained significant attention due to their ability to analyze structural irregularities within executable files, particularly in the identification of malicious software employin…

Cost-Aware Hierarchical Multi-Agent Ransomware Detection and Family Attribution

2026-09-04 · Mubashar Iqbal, Asifullah Khan arxiv

Ransomware detection and family attribution require analysis of different modalities because it can use packing, obfuscation, process manipulation and runtime evasion techniques. However, conventional multimodal usually …

Chatbots in a Botnet World

2022-12-18 · Forrest McKee, David Noever

Question-and-answer formats provide a novel experimental platform for investigating cybersecurity questions. Unlike previous chatbots, the latest ChatGPT model from OpenAI supports an advanced understanding of complex co…