On the Application of Active Learning to Handle Data Evolution in Android Malware Detection

Research output: Chapter in Book/Conference proceedingConference contributionpeer-review

1 Citation (Scopus)

Abstract

Mobile malware detection remains a significant challenge in the rapidly evolving cyber threat landscape. Although the research about the application of machine learning methods to this problem has provided promising results, still, maintaining continued success at detecting malware in operational environments depends on holistically solving challenges regarding the feature variations of malware apps that occur over time and the high costs associated with data labeling. The present study explores the adaptation of the active learning approach for inducing detection models in a non-stationary setting and shows that this approach provides high detection performance with a minimal set of labeled data for a long time when the uncertainty-based sampling strategy is applied. The models that are induced using dynamic, static and hybrid features of mobile malware are compared against baseline approaches. Although active learning has been adapted to many problem domains, it has not been explored in mobile malware detection extensively, especially for non-stationary settings.

Original languageEnglish
Title of host publicationDigital Forensics and Cyber Crime - 13th EAI International Conference, ICDF2C 2022, Proceedings
EditorsSanjay Goel, Akatyev Nikolay, Daryl Johnson, Pavel Gladyshev, George Markowsky
PublisherSpringer Science and Business Media Deutschland GmbH
Pages256-273
Number of pages18
ISBN (Print)9783031365737
DOIs
Publication statusPublished - 2023
Event13th EAI International Conference on Digital Forensics and Cyber Crime, ICDF2C 2022 - Boston, United States
Duration: 16 Nov 202218 Nov 2022

Publication series

NameLecture Notes of the Institute for Computer Sciences, Social-Informatics and Telecommunications Engineering, LNICST
Volume508 LNICST
ISSN (Print)1867-8211
ISSN (Electronic)1867-822X

Conference

Conference13th EAI International Conference on Digital Forensics and Cyber Crime, ICDF2C 2022
Country/TerritoryUnited States
CityBoston
Period16/11/2218/11/22

Keywords

  • active learning
  • Android
  • concept drift
  • data evolution
  • malware detection
  • mobile malware

ASJC Scopus subject areas

  • Computer Networks and Communications

Fingerprint

Dive into the research topics of 'On the Application of Active Learning to Handle Data Evolution in Android Malware Detection'. Together they form a unique fingerprint.

Cite this