ResearchTrend.AI
  • Papers
  • Communities
  • Events
  • Blog
  • Pricing
Papers
Communities
Social Events
Terms and Conditions
Pricing
Parameter LabParameter LabTwitterGitHubLinkedInBlueskyYoutube

© 2025 ResearchTrend.AI, All rights reserved.

  1. Home
  2. Papers
  3. 1707.05970
75
48
v1v2v3v4v5 (latest)

Generic Black-Box End-to-End Attack Against State of the Art API Call Based Malware Classifiers

19 July 2017
Ishai Rosenberg
A. Shabtai
Lior Rokach
Yuval Elovici
    AAML
ArXiv (abs)PDFHTML
Abstract

In this paper, we present a black-box attack against API call based machine learning malware classifiers, focusing on generating adversarial API call sequences that would be misclassified by the classifier without affecting the malware functionality. We show that this attack is effective against many classifiers due to the transferability principle between RNN variants, feed forward DNNs, and traditional machine learning classifiers such as SVM. We further extend our attack against hybrid classifiers based on a combination of static and dynamic features, focusing on printable strings and API calls. Finally, we implement GADGET, a software framework to convert any malware binary to a binary undetected by malware classifiers, using the proposed attack, without access to the malware source code. We conclude by discussing possible defense mechanisms against the attack.

View on arXiv
Comments on this paper