Security News > 2020 > May > Microsoft, Intel Introduce 'STAMINA' Approach to Malware Detection

Microsoft, Intel Introduce 'STAMINA' Approach to Malware Detection
2020-05-11 09:53

Microsoft and Intel have been working together on a new approach to malware detection that involves deep learning and the representation of malware as images.

Referred to as STAtic Malware-as-Image Network Analysis, the research leverages Intel's previous work on static malware classification through deep transfer learning and applies it to a real-world dataset from Microsoft to determine its practical value.

The approach is based on the inspection of malware binaries plotted as grayscale images, which has revealed that there are textural and structural similarities between binaries from the same malware families, and differences between different families or between malware and benign software.

In their whitepaper on STAMINA, researchers from Intel and Microsoft argue that the classic malware detection approach that relies on signature matching is becoming less straightforward due to the rapid increase in signatures, while static and dynamic approaches might not be accurate or time-efficient.

During the evaluation step, the researchers look at the accuracy of their method, "False positive rate, precision, recall, F1 score, and area under the receiver operating curve." The study was performed on a Microsoft dataset that included 2.2 million malware binary hashes, along with 10 columns of data information.


News URL

http://feedproxy.google.com/~r/Securityweek/~3/ok-W6iSM0Hk/microsoft-intel-introduce-stamina-approach-malware-detection

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Microsoft 724 806 4714 4721 3646 13887
Intel 6830 274 757 406 28 1465