Skip to main content

DeepMal4J: Java Malware Detection Employing Deep Learning

  • Conference paper
  • First Online:
Security in Computing and Communications (SSCC 2018)

Part of the book series: Communications in Computer and Information Science ((CCIS,volume 969))

Included in the following conference series:

Abstract

Java is a cross-platform general purpose programming language. Hence, any Java based malware becomes a cross-platform threat. Since 3 Billion devices run Java, it is a serious threat. Currently, there is very little research done in the area of detection of Java malwares. As deep learning recently has proven to be effective in malware detection, we experimented with deep learning algorithms for detecting Java based malware. We name it DeepMal4J and evaluated using Long Short Term Memory (LSTM) and Gated Recurrent Unit (GRU). Our work is a first attempt to use deep neural network for the detection of Java malwares. Our system achieved accuracy of 93.33% using LSTM. This is the first ever reported results of deep learning for Java malware detection. We also present the comparison of performances and accuracy rates. Our system can be scaled up for large scale malware analysis.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 84.99
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 109.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

References

  1. Kaspersky Security Bulletin 2015. https://securelist.com/kaspersky-security-bulletin-2015-overall-statistics-for-2015/73038/

  2. Quick Heal Annual Threat Report 2017. http://dlupdate.quickheal.com/documents/other/Quick_Heal_Annual_Threat_Report_2017.pdf

  3. Watch guard annual security report 2017. https://media.scmagazine.com/documents/306/wg-threat-reportq1-2017_76417.pdf

  4. Moser, A., Kruegel, C., Kirda, E.: Limits of static analysis for malware detection. In: Twenty-Third Annual Computer Security Applications Conference, ACSAC 2007. IEEE (2007)

    Google Scholar 

  5. Gandotra, E., Bansal, D., Sofat, S.: Malware analysis and classification: a survey. J. Inf. Secur. 5(02), 56 (2014)

    Google Scholar 

  6. Hardy, W., et al.: DL4MD: a deep learning framework for intelligent malwares detection. In: Proceedings of the International Conference on Data Mining (DMIN). The Steering Committee of The World Congress in Computer Science, Computer Engineering and Applied Computing (WorldComp) (2016)

    Google Scholar 

  7. Pascanu, R., et al.: Malwares classification with recurrent networks. In: 2015 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP). IEEE (2015)

    Google Scholar 

  8. Saxe, J., Berlin, K.: Deep neural network based malware detection using two dimensional binary program features. In: 2015 10th International Conference on Malicious and Unwanted Software (MALWARE). IEEE (2015)

    Google Scholar 

  9. You, I., Yim, K.: Malware obfuscation techniques: a brief survey. 2010 International Conference on Broadband, Wireless Computing, Communication and Applications (BWCCA). IEEE (2010)

    Google Scholar 

  10. Ganesh, N., et al.: Static analysis of malicious Java applets. In: Proceedings of the 2016 ACM on International Workshop on Security And Privacy Analytics. ACM (2016)

    Google Scholar 

  11. Sutskever, I., Vinyals, O., Le, Q.V.: Sequence to sequence learning with neural networks. In: Advances in Neural Information Processing Systems (2014)

    Google Scholar 

  12. Socher, R., et al.: Recursive deep models for semantic compositionality over a sentiment treebank. In: Proceedings of the 2013 Conference on Empirical Methods in Natural Language Processing (2013)

    Google Scholar 

  13. Herrera, A., Cheney, B.: JMD: a hybrid approach for detecting Java malware. In: Proceedings of the 13th Australasian Information Security Conference (AISC 2015), vol. 27 (2015)

    Google Scholar 

  14. Contagio Malware Dump. http://contagiodump.blogspot.in/2013/03/16800-clean-and-11960-malicious-files.html

  15. Wang, X., Yiu, S.M.: A multi-task learning model for malware classification with useful file access pattern from API call sequence. arXiv preprint arXiv:1610.05945 (2016)

  16. Wang, X.: An automatic analysis and detection tool for Java exploits. Virus Bulletin (2013)

    Google Scholar 

  17. Soman, S., Krintz, C., Vigna, G.: Detecting malicious java code using virtual machine auditing. In: Proceedings of the 12th Conference on USENIX Security Symposium, SSYM 2003, vol. 12, p. 11. USENIX Association, Berkeley (2003)

    Google Scholar 

  18. Kouznetsov, P.: JAD-the fast JAva Decompiler (2006). http://www.kpdus.com/jad.html

  19. Gestwicki, P.V., Jayaraman, B.: JIVE: Java interactive visualization environment. In: Companion to the 19th Annual ACM SIGPLAN Conference on Object-Oriented Programming Systems, Languages, and Applications. ACM (2004)

    Google Scholar 

  20. Yao, K., Zweig, G., Hwang, M.-Y., Shi, Y., Yu, D.: Recurrent neural networks for language understanding. In: InterSpeech, pp. 2524–2528 (2013)

    Google Scholar 

  21. Vukotic, V., Raymond, C., Gravier, G.: Is it time to switch to word embedding and recurrent neural networks for spoken language understanding?. In: InterSpeech, Dresde, Germany (2015)

    Google Scholar 

  22. Hochreiter, S., Schmidhuber, J.: Long short-term memory. Neural Comput. 9(8), 1735–1780 (1997)

    Article  Google Scholar 

  23. Gers, F.A., Schmidhuber, J., Cummins, F.: Learning to forget: continual prediction with LSTM. Neural Comput. 12(10), 2451–2471 (2000)

    Article  Google Scholar 

  24. Chung, J., Gulcehre, C., Cho, K., Bengio, Y.: Empirical evaluation of gated recurrent neural networks on sequence modeling. arXiv preprint arXiv:1412.3555 (2014)

  25. Vukotic, V., Raymond, C., Gravier, G.: A step beyond local observations with a dialog aware bidirectional GRU network for Spoken Language Understanding. In: Interspeech (2016)

    Google Scholar 

  26. Abadi, M., et al.: TensorFlow: a system for large-scale machine learning. In: OSDI, vol. 16 (2016)

    Google Scholar 

  27. Yuan, Z., et al.: Droid-Sec: deep learning in Android malware detection. ACM SIGCOMM Comput. Commun. Rev. 44(4), 371–372 (2014)

    Article  Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Pallavi Kumari Jha .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2019 Springer Nature Singapore Pte Ltd.

About this paper

Check for updates. Verify currency and authenticity via CrossMark

Cite this paper

Jha, P.K., Shankar, P., Sujadevi, V.G., Prabhaharan, P. (2019). DeepMal4J: Java Malware Detection Employing Deep Learning. In: Thampi, S., Madria, S., Wang, G., Rawat, D., Alcaraz Calero, J. (eds) Security in Computing and Communications. SSCC 2018. Communications in Computer and Information Science, vol 969. Springer, Singapore. https://doi.org/10.1007/978-981-13-5826-5_30

Download citation

  • DOI: https://doi.org/10.1007/978-981-13-5826-5_30

  • Published:

  • Publisher Name: Springer, Singapore

  • Print ISBN: 978-981-13-5825-8

  • Online ISBN: 978-981-13-5826-5

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics