{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,14]],"date-time":"2026-04-14T16:01:32Z","timestamp":1776182492209,"version":"3.50.1"},"reference-count":56,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,11,12]],"date-time":"2025-11-12T00:00:00Z","timestamp":1762905600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,11,12]],"date-time":"2025-11-12T00:00:00Z","timestamp":1762905600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,11,12]]},"DOI":"10.1109\/tps-isa67132.2025.00026","type":"proceedings-article","created":{"date-parts":[[2026,3,3]],"date-time":"2026-03-03T20:50:15Z","timestamp":1772571015000},"page":"160-171","source":"Crossref","is-referenced-by-count":2,"title":["LLMalMorph: On the Feasibility of Generating Variant Malware Using Large-Language-Models"],"prefix":"10.1109","author":[{"given":"Md Ajwad","family":"Akil","sequence":"first","affiliation":[{"name":"Purdue University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Adrian Shuai","family":"Li","sequence":"additional","affiliation":[{"name":"Purdue University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Imtiaz","family":"Karim","sequence":"additional","affiliation":[{"name":"The University of Texas at Dallas"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Arun","family":"Iyengar","sequence":"additional","affiliation":[{"name":"Intelligent Data Management and Analytics, LLC"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ashish","family":"Kundu","sequence":"additional","affiliation":[{"name":"Cisco Research"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Vinny","family":"Parla","sequence":"additional","affiliation":[{"name":"Cisco Systems, Inc"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Elisa","family":"Bertino","sequence":"additional","affiliation":[{"name":"Purdue University"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","article-title":"How to stay safe from the biggest cybersecurity threats of 2025","volume-title":"PIA","year":"2024"},{"key":"ref2","article-title":"Malware and virus statistics 2024: The trends you need to know about","volume-title":"AVG","year":"2024"},{"key":"ref3","article-title":"State of ransomware","volume-title":"Sophos","year":"2024"},{"key":"ref4","author":"Dubey","year":"2024","journal-title":"The llama 3 herd of models"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2021.findings-emnlp.37"},{"key":"ref6","author":"Jiang","year":"2023","journal-title":"Mistral 7b (2023)"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/3695988"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.32614\/cran.package.codestral"},{"key":"ref9","author":"Roziere","year":"2023","journal-title":"Code llama: Open foundation models for code"},{"key":"ref10","author":"Zhu","year":"2024","journal-title":"Deepseek-coder-v2: Breaking the barrier of closed-source models in code intelligence"},{"key":"ref11","author":"Lozhkov","year":"2024","journal-title":"Starcoder 2 and the stack v2: The next generation"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2025.acl-long.1591"},{"key":"ref13","article-title":"Can it edit? evaluating the ability of large language models to follow code editing instructions","volume-title":"Conference on Language Modeling (COLM)","author":"Cassano","year":"2024"},{"key":"ref14","author":"Guo","year":"2024","journal-title":"Codeeditorbench: Evaluating code editing capability of large language models"},{"key":"ref15","author":"Cordeiro","year":"2024","journal-title":"An empirical study on the code refactoring capability of large language models"},{"key":"ref16","article-title":"State of ai cyber security 2024","volume-title":"Darktrace","year":"2024"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/SPW59333.2023.00027"},{"key":"ref18","doi-asserted-by":"crossref","first-page":"102762","DOI":"10.1016\/j.cose.2022.102762","article-title":"Adversarial malware sample generation method based on the prototype of deep learning detector","volume":"119","author":"Qiao","year":"2022","journal-title":"Computers & Security"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/PRDC47002.2019.00055"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1145\/3433210.3453086"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1007\/s11416-016-0281-3"},{"key":"ref22","first-page":"7393","article-title":"A wolf in sheep\u2019s clothing: Practical black-box adversarial attacks for evading learning-based windows malware detection in the wild","volume-title":"33rd USENIX Security Symposium (USENIX Security 24). USENIX Association","author":"Ling","year":"2024"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-64171-8_7"},{"key":"ref24","article-title":"Desktop operating system market share worldwide - november 2024","volume-title":"Avg","year":"2024"},{"key":"ref25","article-title":"Desktop operating system market share worldwide - november 2024","year":"2024","journal-title":"Statscounter"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/3747588"},{"key":"ref27","article-title":"SWE-bench: Can language models resolve realworld github issues?","volume-title":"The Twelfth International Conference on Learning Representations","author":"Jimenez","year":"2024"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/3571730"},{"key":"ref29","author":"Liu","year":"2024","journal-title":"Exploring and evaluating hallucinations in 11 m -powered code generation"},{"key":"ref30","doi-asserted-by":"crossref","first-page":"3563","DOI":"10.18653\/v1\/2024.findings-acl.212","article-title":"Chain-of-verification reduces hallucination in large language models","volume-title":"Findings of the Association for Computational Linguistics: ACL 2024","author":"Dhuliawala","year":"2024"},{"key":"ref31","author":"Xu","year":"2024","journal-title":"Decoprompt: Decoding prompts reduces hallucinations when large language models meet false premises"},{"key":"ref32","author":"Barkley","year":"2024","journal-title":"Investigating the role of prompting and external tools in hallucination rates of large language models"},{"key":"ref33","article-title":"Attention is all you need","author":"Vaswani","year":"2017","journal-title":"Advances in Neural Information Processing Systems"},{"key":"ref34","author":"Brown","year":"2020","journal-title":"Language models are few-shot learners"},{"key":"ref35","author":"Akil","year":"2025","journal-title":"Llmalmorph: On the feasibility of generating variant malware using large-language-models"},{"key":"ref36","article-title":"Malware-database","volume-title":"Cryptwareapps","year":"2024"},{"key":"ref37","article-title":"Malwaresourcecode","volume-title":"Vxunderground","year":"2024"},{"key":"ref38","article-title":"Vt docs","volume-title":"VT","year":"2025"},{"key":"ref39","article-title":"Opswat metadefender multiscanning technology","volume-title":"Metadefender","year":"2025"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00023"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1109\/LCN.2009.5355037"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/INFOCOM48880.2022.9796786"},{"key":"ref43","author":"Raff","year":"2017","journal-title":"Malware detection by eating a whole exe"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2025.240830"},{"key":"ref45","article-title":"Binary black-box evasion attacks against deep learning-based static malware detectors with adversarial byte-level language model","volume-title":"CoRR","volume":"abs\/2012.07994","author":"Ebrahimi","year":"2020"},{"key":"ref46","author":"Kreuk","year":"2018","journal-title":"Deceiving end-to-end deep learning malware detectors using adversarial examples"},{"key":"ref47","article-title":"Black-box adversarial attacks against deep learning based malware binaries detection with gan","volume-title":"European Conference on Artificial Intelligence","author":"Yuan","year":"2020"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.23919\/EUSIPCO.2018.8553214"},{"key":"ref49","first-page":"8","article-title":"Exploring Adversarial Examples in Malware Detection","volume-title":"2019 IEEE Security and Privacy Workshops (SPW)","author":"Suciu"},{"key":"ref50","article-title":"Adversarial training for raw-binary malware classifiers","volume-title":"in Proceedings of the 32nd USENIX Security Symposium","author":"Lucas"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1007\/978-981-19-8991-9_29"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1109\/ICAIIC.2019.8669079"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1145\/3411508.3421374"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2022.3153844"},{"issue":"15","key":"ref55","doi-asserted-by":"crossref","DOI":"10.3390\/app12157546","article-title":"Research on the construction of malware variant datasets and their detection method","volume":"12","author":"Lu","year":"2022","journal-title":"Applied Sciences"},{"key":"ref56","article-title":"Ai rmf","volume-title":"NIST","year":"2024"}],"event":{"name":"2025 IEEE 7th International Conference on Trust, Privacy and Security in Intelligent Systems, and Applications (TPS-ISA)","location":"Pittsburgh, PA, USA","start":{"date-parts":[[2025,11,12]]},"end":{"date-parts":[[2025,11,14]]}},"container-title":["2025 IEEE 7th International Conference on Trust, Privacy and Security in Intelligent Systems, and Applications (TPS-ISA)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11410113\/11410157\/11410384.pdf?arnumber=11410384","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,3,4]],"date-time":"2026-03-04T06:51:18Z","timestamp":1772607078000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11410384\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,11,12]]},"references-count":56,"URL":"https:\/\/doi.org\/10.1109\/tps-isa67132.2025.00026","relation":{},"subject":[],"published":{"date-parts":[[2025,11,12]]}}}