REVIEW 4 cited by
MORPH: Towards Automated Concept Drift Adaptation for Malware Detection
Not yet reviewed by Pith; the record is open.
This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.
SPECIMEN: schema-true, not a live event
T0 review · schema-true
One-sentence machine reading of the paper's core claim.
pith:XXXXXXXX · record.json · timestamp
read the original abstract
Concept drift is a significant challenge for malware detection, as the performance of trained machine learning models degrades over time, rendering them impractical. While prior research in malware concept drift adaptation has primarily focused on active learning, which involves selecting representative samples to update the model, self-training has emerged as a promising approach to mitigate concept drift. Self-training involves retraining the model using pseudo labels to adapt to shifting data distributions. In this research, we propose MORPH -- an effective pseudo-label-based concept drift adaptation method specifically designed for neural networks. Through extensive experimental analysis of Android and Windows malware datasets, we demonstrate the efficacy of our approach in mitigating the impact of concept drift. Our method offers the advantage of reducing annotation efforts when combined with active learning. Furthermore, our method significantly improves over existing works in automated concept drift adaptation for malware detection.
Forward citations
Cited by 4 Pith papers
-
Empirical Evaluation of Concept Drift in ML-Based Android Malware Detection
Concept drift consistently lowers Android malware detection accuracy across nine machine learning and deep learning algorithms and two large language models, on two datasets.
-
Understanding Concept Drift with Deprecated Permissions in Android Malware Detection
Removing deprecated and restricted Android permissions barely changes malware detection accuracy, but makes year-to-year model drift easier to detect.
-
ADAPT: A Pseudo-labeling Approach to Combat Concept Drift in Malware Detection
A pseudo-labeling method with class-specific adaptive thresholds, label-consistent augmentation, and mixup reduces concept-drift performance loss in malware classifiers across five datasets.
-
MADCAT: Combating Malware Detection Under Concept Drift with Test-Time Adaptation
MADCAT applies masked-autoencoder test-time training to Android malware detection and reports improved F1 under concept drift, but the main experiments use ground-truth labels for balancing.
Discussion (0). Sign in to comment.