anomaly-based malware detection
TRANSCRIPT
![Page 1: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/1.jpg)
A N O M A LY- B A S E D M A LWA R E D E T E C T I O N
![Page 2: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/2.jpg)
W H AT I S A N I D S ?
![Page 3: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/3.jpg)
A N I D S WO R K S A L O N G S I D E F I R E WA L L S
https://latesthackingnews.com/wp-content/uploads/2017/09/IDS.png
![Page 4: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/4.jpg)
https://miro.medium.com/max/2450/1*XOmaFChbyICBDaC8GwIHsg.png
![Page 5: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/5.jpg)
W H Y A N O M A LY- B A S E D I D S ?
![Page 6: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/6.jpg)
I M P ROV I N G A N O M A LY – B A S E D I D S
D E T E C T I O N W I T H M AC H I N E L E A R N I N G
![Page 7: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/7.jpg)
M Y C A P S TO N EP RO J E C T
![Page 8: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/8.jpg)
T H E DATA S E T
![Page 9: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/9.jpg)
DATA P R E PA R AT I O N
Normal Vs Anomaly
![Page 10: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/10.jpg)
O R I G I N A L M U LT I C L A S S L A B E L
![Page 11: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/11.jpg)
TO B I N A RY & DATA B A L A N C E
Balancing data maximizes accuracy.
Used Down-sampling method.
Before Down-Sampling:
0 10317691
1 1339841
After Down-Sampling
1 1339841
0 1339841
![Page 12: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/12.jpg)
M L L E A R N I N G E N V I RO N M E N T: AW S S AG E M A K E R
![Page 13: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/13.jpg)
L E A R N I N G P RO C E S S
1.
2.
3.
4.
5.
6.
7.
![Page 14: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/14.jpg)
A L G O R I T H M S U S E D
![Page 15: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/15.jpg)
R E S U L T S
![Page 16: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/16.jpg)
F 1 - S C O R E
![Page 17: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/17.jpg)
R E S U L T S ( C N T ’ D … )
![Page 18: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/18.jpg)
C O N C L U S I O N
![Page 19: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/19.jpg)
C O D E , B E S T M O D E L F I L E , & J U P Y T E R
N OT E B O O K S :
(Including this presentation)
![Page 20: Anomaly-BaseD Malware detection](https://reader033.vdocument.in/reader033/viewer/2022050407/627062c7eec88a2676657a5c/html5/thumbnails/20.jpg)