Presentation | 2017-11-20 Preliminary Evaluation on the Program Classification at the Processor Level using Machine Learning Ryotaro Kobayashi, Hayate Takase, Genki Otani, Ren Ohmura, Masahiko Kato, |
---|---|
PDF Download Page | PDF download Page Link |
Abstract(in Japanese) | (See Japanese page) |
Abstract(in English) | As use of IoT devices becomes widespread, a lot of things are connected to the Internet, and the convenience of everyday life has been improved. However, due to the various attacks intended for IoT devices, including the large-scale DDoS attacks using IoT devices as a springboard, security of IoT devices is regarded important. In most IoT devices, it is not easy to introduce anti-virus software and perform frequent pattern file updates because of the limited hardware resources. Therefore, we propose a malware detection mechanism utilizing information extracted from a processor to suppress the consumption of hardware resource. We aim to detect malware by machine learning using information processed in the processor such as assembly code and register value as a feature quantity. In this paper, we used software simulator to perform preliminary evaluation of a program classification by our mechanism. The evaluation results show that the programs can be classified with high accuracy by the processor information. |
Keyword(in Japanese) | (See Japanese page) |
Keyword(in English) | IoT / machine learning / malware detection / behavior / processor information |
Paper # | ICSS2017-39 |
Date of Issue | 2017-11-13 (ICSS) |
Conference Information | |
Committee | ICSS |
---|---|
Conference Date | 2017/11/20(2days) |
Place (in Japanese) | (See Japanese page) |
Place (in English) | Beppu International Convention Center |
Topics (in Japanese) | (See Japanese page) |
Topics (in English) | Information Communication System Security, etc. |
Chair | Yoshiaki Shiraishi(Kobe Univ.) |
Vice Chair | Takeshi Ueda(Mitsubishi Electric) / Hiroki Takakura(NII) |
Secretary | Takeshi Ueda(Yokohama National Univ.) / Hiroki Takakura(NTT) |
Assistant | Takahiro Kasama(NICT) / Akira Yamada(KDDI labs.) |
Paper Information | |
Registration To | Technical Committee on Information and Communication System Security |
---|---|
Language | JPN |
Title (in Japanese) | (See Japanese page) |
Sub Title (in Japanese) | (See Japanese page) |
Title (in English) | Preliminary Evaluation on the Program Classification at the Processor Level using Machine Learning |
Sub Title (in English) | |
Keyword(1) | IoT |
Keyword(2) | machine learning |
Keyword(3) | malware detection |
Keyword(4) | behavior |
Keyword(5) | processor information |
1st Author's Name | Ryotaro Kobayashi |
1st Author's Affiliation | Kogakuin University(Kogakuin Univ.) |
2nd Author's Name | Hayate Takase |
2nd Author's Affiliation | Toyohashi University of Technology(Toyohashi Univ. of Tech.) |
3rd Author's Name | Genki Otani |
3rd Author's Affiliation | Toyohashi University of Technology(Toyohashi Univ. of Tech.) |
4th Author's Name | Ren Ohmura |
4th Author's Affiliation | Toyohashi University of Technology(Toyohashi Univ. of Tech.) |
5th Author's Name | Masahiko Kato |
5th Author's Affiliation | University of Nagasaki(Univ. of Nagasaki) |
Date | 2017-11-20 |
Paper # | ICSS2017-39 |
Volume (vol) | vol.117 |
Number (no) | ICSS-316 |
Page | pp.pp.5-10(ICSS), |
#Pages | 6 |
Date of Issue | 2017-11-13 (ICSS) |