{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,7]],"date-time":"2026-05-07T11:22:10Z","timestamp":1778152930419,"version":"3.51.4"},"publisher-location":"New York, NY, USA","reference-count":82,"publisher":"ACM","license":[{"start":{"date-parts":[[2020,11,9]],"date-time":"2020-11-09T00:00:00Z","timestamp":1604880000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/100006234","name":"Sandia National Laboratories","doi-asserted-by":"publisher","id":[{"id":"10.13039\/100006234","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2020,11,13]]},"DOI":"10.1145\/3411508.3421373","type":"proceedings-article","created":{"date-parts":[[2020,11,2]],"date-time":"2020-11-02T21:16:40Z","timestamp":1604351800000},"page":"49-60","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":19,"title":["Mind the Gap"],"prefix":"10.1145","author":[{"given":"Michael R.","family":"Smith","sequence":"first","affiliation":[{"name":"Sandia National Laboratories, Albuquerque, NM, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Nicholas T.","family":"Johnson","sequence":"additional","affiliation":[{"name":"Sandia National Laboratories, Albuquerque, NM, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Joe B.","family":"Ingram","sequence":"additional","affiliation":[{"name":"Sandia National Laboratories, Albuquerque, NM, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Armida J.","family":"Carbajal","sequence":"additional","affiliation":[{"name":"Sandia National Laboratories, Albuquerque, NM, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bridget I.","family":"Haus","sequence":"additional","affiliation":[{"name":"University of Southern California, Viterbi School of Engineering, Los Angeles, CA, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Eva","family":"Domschot","sequence":"additional","affiliation":[{"name":"New Mexico Institute of Mining and Technology, Socorro, NM, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ramyaa","family":"Ramyaa","sequence":"additional","affiliation":[{"name":"New Mexico Institute of Mining and Technology, Socorro, NM, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Christopher C.","family":"Lamb","sequence":"additional","affiliation":[{"name":"Sandia National Laboratories, Albuquerque, NM, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Stephen J.","family":"Verzi","sequence":"additional","affiliation":[{"name":"Sandia National Laboratories, Albuquerque, NM, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"W. Philip","family":"Kegelmeyer","sequence":"additional","affiliation":[{"name":"Sandia National Laboratories, Livermore, CA, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2020,11,9]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"theZoo - A live malware repository. https:\/\/thezoo.morirt.com\/ (Accessed","year":"2020","unstructured":"[n.d.]. theZoo - A live malware repository. https:\/\/thezoo.morirt.com\/ (Accessed July 2020 ). [n.d.]. theZoo - A live malware repository. https:\/\/thezoo.morirt.com\/ (Accessed July 2020)."},{"key":"e_1_3_2_1_2_1","volume-title":"https:\/\/virusshare.com\/ (Accessed","author":"Caring Because Sharing","year":"2020","unstructured":"[n.d.]. VirusShare.com - Because Sharing is Caring . https:\/\/virusshare.com\/ (Accessed June 2020 ). [n.d.]. VirusShare.com - Because Sharing is Caring. https:\/\/virusshare.com\/ (Accessed June 2020)."},{"key":"e_1_3_2_1_3_1","volume-title":"https:\/\/www.virustotal.com (Accessed","year":"2020","unstructured":"[n.d.]. VirusTotal. https:\/\/www.virustotal.com (Accessed July 2020 ). [n.d.]. VirusTotal. https:\/\/www.virustotal.com (Accessed July 2020)."},{"key":"e_1_3_2_1_4_1","unstructured":"[n.d.]. VX Heaven Virus Collection. http:\/\/vxheaven.org\/ (Accessed July 2020).  [n.d.]. VX Heaven Virus Collection. http:\/\/vxheaven.org\/ (Accessed July 2020)."},{"key":"e_1_3_2_1_5_1","unstructured":"2018. Malware detection -- make your own malware security system in association with meraz'18 malware security partner Max Secure Software. https:\/\/www.kaggle.com\/c\/malware-detection.  2018. Malware detection -- make your own malware security system in association with meraz'18 malware security partner Max Secure Software. https:\/\/www.kaggle.com\/c\/malware-detection."},{"key":"e_1_3_2_1_7_1","unstructured":"2019 (Accessed July 2020). Malware Behavior Catalog. https:\/\/github.com\/ MBCProject\/mbc-markdown  2019 (Accessed July 2020). Malware Behavior Catalog. https:\/\/github.com\/ MBCProject\/mbc-markdown"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/2857705.2857713"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-78800-3_28"},{"key":"e_1_3_2_1_10_1","volume-title":"Anderson and Phil Roth","author":"Hyrum","year":"2018","unstructured":"Hyrum S. Anderson and Phil Roth . 2018 . EMBER : An Open Dataset for Training Static PE Malware Machine Learning Models. CoRR abs\/1804.04637 (2018). Hyrum S. Anderson and Phil Roth. 2018. EMBER: An Open Dataset for Training Static PE Malware Machine Learning Models. CoRR abs\/1804.04637 (2018)."},{"key":"e_1_3_2_1_11_1","volume-title":"3rd International Conference on Learning Representations, ICLR 2015, San Diego, CA, USA, May 7-9, 2015, Conference Track Proceedings, Yoshua Bengio and Yann LeCun (Eds.).","author":"Bahdanau Dzmitry","year":"2015","unstructured":"Dzmitry Bahdanau , Kyunghyun Cho , and Yoshua Bengio . 2015 . Neural Machine Translation by Jointly Learning to Align and Translate . In 3rd International Conference on Learning Representations, ICLR 2015, San Diego, CA, USA, May 7-9, 2015, Conference Track Proceedings, Yoshua Bengio and Yann LeCun (Eds.). Dzmitry Bahdanau, Kyunghyun Cho, and Yoshua Bengio. 2015. Neural Machine Translation by Jointly Learning to Align and Translate. In 3rd International Conference on Learning Representations, ICLR 2015, San Diego, CA, USA, May 7-9, 2015, Conference Track Proceedings, Yoshua Bengio and Yann LeCun (Eds.)."},{"key":"e_1_3_2_1_12_1","volume-title":"A Benchmark API Call Dataset for Windows PE Malware Classification. CoRR abs\/1905.01999","author":"\u00c7atak Ferhat \u00d6zg\u00fcr","year":"2019","unstructured":"Ferhat \u00d6zg\u00fcr \u00c7atak and Ahmet Faruk Yazi . 2019. A Benchmark API Call Dataset for Windows PE Malware Classification. CoRR abs\/1905.01999 ( 2019 ). Ferhat \u00d6zg\u00fcr \u00c7atak and Ahmet Faruk Yazi. 2019. A Benchmark API Call Dataset for Windows PE Malware Classification. CoRR abs\/1905.01999 (2019)."},{"key":"e_1_3_2_1_13_1","unstructured":"Lorenzo Cavallaro. 2019. When the Magic Wears Off: Flaws in ML for Security Evaluations (and What to Do about It). (2019).  Lorenzo Cavallaro. 2019. When the Magic Wears Off: Flaws in ML for Security Evaluations (and What to Do about It). (2019)."},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/512950.512973"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/2603088.2603165"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"crossref","unstructured":"J. Deng W. Dong R. Socher L.-J. Li K. Li and L. Fei-Fei. 2009. ImageNet: A Large-Scale Hierarchical Image Database. In IEEE Computer Vision and Pattern Recognition (CVPR).  J. Deng W. Dong R. Socher L.-J. Li K. Li and L. Fei-Fei. 2009. ImageNet: A Large-Scale Hierarchical Image Database. In IEEE Computer Vision and Pattern Recognition (CVPR).","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"e_1_3_2_1_18_1","volume-title":"SMART: Semantic Malware Attribute Relevance Tagging. CoRR abs\/1905.06262","author":"Ducau Felipe N.","year":"2019","unstructured":"Felipe N. Ducau , Ethan M. Rudd , Tad M. Heppner , Alex Long , and Konstantin Berlin . 2019 . SMART: Semantic Malware Attribute Relevance Tagging. CoRR abs\/1905.06262 (2019). arXiv:1905.06262 http:\/\/arxiv.org\/abs\/1905.06262 Felipe N. Ducau, Ethan M. Rudd, Tad M. Heppner, Alex Long, and Konstantin Berlin. 2019. SMART: Semantic Malware Attribute Relevance Tagging. CoRR abs\/1905.06262 (2019). arXiv:1905.06262 http:\/\/arxiv.org\/abs\/1905.06262"},{"key":"e_1_3_2_1_19_1","volume-title":"Kline","author":"Erickson Bradley J.","year":"2017","unstructured":"Bradley J. Erickson , Panagiotis Korfiatis , Zeynettin Akkus , and Timothy L . Kline . 2017 . Machine Learning for Medical Imaging. RadioGraphics (Feb 2017). https: \/\/doi.org\/10.1148\/rg.2017160130 10.1148\/rg.2017160130 Bradley J. Erickson, Panagiotis Korfiatis, Zeynettin Akkus, and Timothy L. Kline. 2017. Machine Learning for Medical Imaging. RadioGraphics (Feb 2017). https: \/\/doi.org\/10.1148\/rg.2017160130"},{"key":"e_1_3_2_1_20_1","volume-title":"2010 Second International Conference on Advances in Computing, Control, and Telecommunication Technologies. 201--203","author":"Firdausi I.","unstructured":"I. Firdausi , C. lim, A. Erwin , and A. S. Nugroho . 2010. Analysis of Machine learning Techniques Used in Behavior-Based Malware Detection . In 2010 Second International Conference on Advances in Computing, Control, and Telecommunication Technologies. 201--203 . I. Firdausi, C. lim, A. Erwin, and A. S. Nugroho. 2010. Analysis of Machine learning Techniques Used in Behavior-Based Malware Detection. In 2010 Second International Conference on Advances in Computing, Control, and Telecommunication Technologies. 201--203."},{"key":"e_1_3_2_1_21_1","volume-title":"The elements of statistical learning","author":"Friedman Jerome","unstructured":"Jerome Friedman , Trevor Hastie , and Robert Tibshirani . 2001. The elements of statistical learning . Vol. 1 . Springer series in statistics New York. Jerome Friedman, Trevor Hastie, and Robert Tibshirani. 2001. The elements of statistical learning. Vol. 1. Springer series in statistics New York."},{"key":"e_1_3_2_1_22_1","volume-title":"Behavior-based features model for malware detection. Journal of Computer Virology and Hacking Techniques (06","author":"Galal Hisham","year":"2015","unstructured":"Hisham Galal . 2015. Behavior-based features model for malware detection. Journal of Computer Virology and Hacking Techniques (06 2015 ). https:\/\/doi.org\/ 10.1007\/s11416-015-0244-0 10.1007\/s11416-015-0244-0 Hisham Galal. 2015. Behavior-based features model for malware detection. Journal of Computer Virology and Hacking Techniques (06 2015). https:\/\/doi.org\/ 10.1007\/s11416-015-0244-0"},{"key":"e_1_3_2_1_23_1","volume-title":"Article 44 (March","author":"Gama Jo\u00e3o","year":"2014","unstructured":"Jo\u00e3o Gama , Indrundefined ?liobaitundefined, Albert Bifet , Mykola Pechenizkiy , and Abdelhamid Bouchachia . 2014. A Survey on Concept Drift Adaptation. ACM Comput. Surv. 46, 4 , Article 44 (March 2014 ), 37 pages. https:\/\/doi.org\/10.1145\/ 2523813 Jo\u00e3o Gama, Indrundefined ?liobaitundefined, Albert Bifet, Mykola Pechenizkiy, and Abdelhamid Bouchachia. 2014. A Survey on Concept Drift Adaptation. ACM Comput. Surv. 46, 4, Article 44 (March 2014), 37 pages. https:\/\/doi.org\/10.1145\/ 2523813"},{"key":"e_1_3_2_1_24_1","volume-title":"Proceedings of the International Conference on Learning Representations (ICLR).","author":"Geirhos Robert","year":"2019","unstructured":"Robert Geirhos , Patricia Rubisch , Claudio Michaelis , Matthias Bethge , Felix A. Wichmann , and Wieland Brendel . 2019 . ImageNet-trained CNNs are biased towards texture; increasing shape bias improves accuracy and robustness . In Proceedings of the International Conference on Learning Representations (ICLR). Robert Geirhos, Patricia Rubisch, Claudio Michaelis, Matthias Bethge, Felix A. Wichmann, and Wieland Brendel. 2019. ImageNet-trained CNNs are biased towards texture; increasing shape bias improves accuracy and robustness. In Proceedings of the International Conference on Learning Representations (ICLR)."},{"key":"e_1_3_2_1_25_1","volume-title":"Malware Classification Using Compact Image Features and Multiclass Support Vector Machines. IET Information Security (01","author":"Ghouti Lahouari","year":"2020","unstructured":"Lahouari Ghouti . 2020. Malware Classification Using Compact Image Features and Multiclass Support Vector Machines. IET Information Security (01 2020 ). https:\/\/doi.org\/10.1049\/iet-ifs.2019.0189 10.1049\/iet-ifs.2019.0189 Lahouari Ghouti. 2020. Malware Classification Using Compact Image Features and Multiclass Support Vector Machines. IET Information Security (01 2020). https:\/\/doi.org\/10.1049\/iet-ifs.2019.0189"},{"key":"e_1_3_2_1_26_1","article-title":"The MovieLens Datasets: History and Context","volume":"5","author":"Maxwell Harper F.","year":"2015","unstructured":"F. Maxwell Harper and Joseph A. Konstan . 2015 . The MovieLens Datasets: History and Context . ACM Transactions on Interactive Intelligent Systems 5 , 4, Article 19 (Dec. 2015), 19 pages. F. Maxwell Harper and Joseph A. Konstan. 2015. The MovieLens Datasets: History and Context. ACM Transactions on Interactive Intelligent Systems 5, 4, Article 19 (Dec. 2015), 19 pages.","journal-title":"ACM Transactions on Interactive Intelligent Systems"},{"key":"e_1_3_2_1_27_1","volume-title":"The Semantics of Programming Languages: An Elementary Introduction Using Structural Operational Semantics","author":"Hennessy Matthew","unstructured":"Matthew Hennessy . 1990. The Semantics of Programming Languages: An Elementary Introduction Using Structural Operational Semantics . John Wiley & Sons, Inc. , USA. Matthew Hennessy. 1990. The Semantics of Programming Languages: An Elementary Introduction Using Structural Operational Semantics. John Wiley & Sons, Inc., USA."},{"key":"e_1_3_2_1_28_1","volume-title":"Squeeze-and-Excitation Networks. In 2018 IEEE\/CVF Conference on Computer Vision and Pattern Recognition. 7132--7141","author":"Hu J.","unstructured":"J. Hu , L. Shen , and G. Sun . 2018 . Squeeze-and-Excitation Networks. In 2018 IEEE\/CVF Conference on Computer Vision and Pattern Recognition. 7132--7141 . J. Hu, L. Shen, and G. Sun. 2018. Squeeze-and-Excitation Networks. In 2018 IEEE\/CVF Conference on Computer Vision and Pattern Recognition. 7132--7141."},{"key":"e_1_3_2_1_29_1","volume-title":"International Conference on Detection of Intrusions and Malware, and Vulnerability Assessment. Springer, 102--122","author":"Jacob Gr\u00e9goire","year":"2012","unstructured":"Gr\u00e9goire Jacob , Paolo Milani Comparetti , Matthias Neugschwandtner , Christopher Kruegel , and Giovanni Vigna . 2012 . A static, packer-agnostic filter to detect similar malware samples . In International Conference on Detection of Intrusions and Malware, and Vulnerability Assessment. Springer, 102--122 . Gr\u00e9goire Jacob, Paolo Milani Comparetti, Matthias Neugschwandtner, Christopher Kruegel, and Giovanni Vigna. 2012. A static, packer-agnostic filter to detect similar malware samples. In International Conference on Detection of Intrusions and Malware, and Vulnerability Assessment. Springer, 102--122."},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1145\/41625.41635"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1145\/3331076.3331111"},{"key":"e_1_3_2_1_32_1","volume-title":"Natural Semantics. In Proceedings of the 4th Annual Symposium on Theoretical Aspects of Computer Science (STACS '87)","author":"Kahn Gilles","year":"1987","unstructured":"Gilles Kahn . 1987 . Natural Semantics. In Proceedings of the 4th Annual Symposium on Theoretical Aspects of Computer Science (STACS '87) . Springer-Verlag, Berlin, Heidelberg, 22--39. Gilles Kahn. 1987. Natural Semantics. In Proceedings of the 4th Annual Symposium on Theoretical Aspects of Computer Science (STACS '87). Springer-Verlag, Berlin, Heidelberg, 22--39."},{"key":"e_1_3_2_1_33_1","volume-title":"Malware Classification with Deep Convolutional Neural Networks. In 2018 9th IFIP International Conference on New Technologies, Mobility and Security (NTMS). 1--5.","author":"Kalash M.","unstructured":"M. Kalash , M. Rochan , N. Mohammed , N. D. B. Bruce , Y. Wang , and F. Iqbal . 2018 . Malware Classification with Deep Convolutional Neural Networks. In 2018 9th IFIP International Conference on New Technologies, Mobility and Security (NTMS). 1--5. M. Kalash, M. Rochan, N. Mohammed, N. D. B. Bruce, Y. Wang, and F. Iqbal. 2018. Malware Classification with Deep Convolutional Neural Networks. In 2018 9th IFIP International Conference on New Technologies, Mobility and Security (NTMS). 1--5."},{"key":"e_1_3_2_1_34_1","volume-title":"Proceedings of the 8th ACM Workshop on Artificial Intelligence and Security","author":"Kantchelian Alex","unstructured":"Alex Kantchelian , Michael Carl Tschantz , Sadia Afroz , Brad Miller , Vaishaal Shankar , Rekha Bachwani , Anthony D. Joseph , and J. D. Tygar . 2015. Better Malware Ground Truth: Techniques for Weighting Anti-Virus Vendor Labels . In Proceedings of the 8th ACM Workshop on Artificial Intelligence and Security ( Denver, Colorado, USA). Association for Computing Machinery, New York, NY, USA, 45--56. Alex Kantchelian, Michael Carl Tschantz, Sadia Afroz, Brad Miller, Vaishaal Shankar, Rekha Bachwani, Anthony D. Joseph, and J. D. Tygar. 2015. Better Malware Ground Truth: Techniques for Weighting Anti-Virus Vendor Labels. In Proceedings of the 8th ACM Workshop on Artificial Intelligence and Security (Denver, Colorado, USA). Association for Computing Machinery, New York, NY, USA, 45--56."},{"key":"e_1_3_2_1_35_1","volume-title":"Streaming Malware Classification in the Presence of Concept Drift and Class Imbalance. In 2013 12th International Conference on Machine Learning and Applications","volume":"2","author":"Kegelmeyer W. P.","unstructured":"W. P. Kegelmeyer , K. Chiang , and J. Ingram . 2013 . Streaming Malware Classification in the Presence of Concept Drift and Class Imbalance. In 2013 12th International Conference on Machine Learning and Applications , Vol. 2 . 48--53. W. P. Kegelmeyer, K. Chiang, and J. Ingram. 2013. Streaming Malware Classification in the Presence of Concept Drift and Class Imbalance. In 2013 12th International Conference on Machine Learning and Applications, Vol. 2. 48--53."},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1145\/2345156.2254088"},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1109\/72.554195"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/5.726791"},{"key":"e_1_3_2_1_39_1","volume-title":"Reiter","author":"Li Peng","year":"2010","unstructured":"Peng Li , Limin Liu , Debin Gao , and Michael K . Reiter . 2010 . On Challenges in Evaluating Malware Clustering. In Recent Advances in Intrusion Detection, Somesh Jha, Robin Sommer, and Christian Kreibich (Eds.). Springer Berlin Heidelberg , Berlin, Heidelberg, 238--255. Peng Li, Limin Liu, Debin Gao, and Michael K. Reiter. 2010. On Challenges in Evaluating Malware Clustering. In Recent Advances in Intrusion Detection, Somesh Jha, Robin Sommer, and Christian Kreibich (Eds.). Springer Berlin Heidelberg, Berlin, Heidelberg, 238--255."},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-23702-7_11"},{"key":"e_1_3_2_1_41_1","unstructured":"Microsoft Corporation. 2018 (Accessed May 2020). Structure of the Registry. https:\/\/docs.microsoft.com\/en-us\/windows\/win32\/sysinfo\/structure-ofthe-registry  Microsoft Corporation. 2018 (Accessed May 2020). Structure of the Registry. https:\/\/docs.microsoft.com\/en-us\/windows\/win32\/sysinfo\/structure-ofthe-registry"},{"key":"e_1_3_2_1_42_1","doi-asserted-by":"publisher","DOI":"10.1038\/nature14236"},{"key":"e_1_3_2_1_43_1","volume-title":"The Art of Software Testing","author":"Myers Glenford J.","unstructured":"Glenford J. Myers , Corey Sandler , and Tom Badgett . 2011. The Art of Software Testing ( 3 rd ed.). Wiley Publishing . Glenford J. Myers, Corey Sandler, and Tom Badgett. 2011. The Art of Software Testing (3rd ed.). Wiley Publishing.","edition":"3"},{"key":"e_1_3_2_1_44_1","volume-title":"Proceedings of the 8th International Symposium on Visualization for Cyber Security","author":"Nataraj L.","year":"2016","unstructured":"L. Nataraj , S. Karthikeyan , G. Jacob , and B. S. Manjunath . 2011. Malware Images: Visualization and Automatic Classification . In Proceedings of the 8th International Symposium on Visualization for Cyber Security ( Pittsburgh, Pennsylvania, USA) (VizSec '11). Association for Computing Machinery, New York, NY, USA, Article 4, 7 pages. https:\/\/doi.org\/10.1145\/ 2016 904.2016908 10.1145\/2016904.2016908 L. Nataraj, S. Karthikeyan, G. Jacob, and B. S. Manjunath. 2011. Malware Images: Visualization and Automatic Classification. In Proceedings of the 8th International Symposium on Visualization for Cyber Security (Pittsburgh, Pennsylvania, USA) (VizSec '11). Association for Computing Machinery, New York, NY, USA, Article 4, 7 pages. https:\/\/doi.org\/10.1145\/2016904.2016908"},{"key":"e_1_3_2_1_45_1","volume-title":"Identifying Useful Features for Malware Detection in the Ember Dataset. In 2019 Seventh International Symposium on Computing and Networking Workshops (CANDARW). 360--366","author":"Oyama Y.","unstructured":"Y. Oyama , T. Miyashita , and H. Kokubo . 2019 . Identifying Useful Features for Malware Detection in the Ember Dataset. In 2019 Seventh International Symposium on Computing and Networking Workshops (CANDARW). 360--366 . Y. Oyama, T. Miyashita, and H. Kokubo. 2019. Identifying Useful Features for Malware Detection in the Ember Dataset. In 2019 Seventh International Symposium on Computing and Networking Workshops (CANDARW). 360--366."},{"key":"e_1_3_2_1_46_1","volume-title":"28th USENIX Security Symposium (USENIX Security 19)","author":"Pendlebury Feargus","year":"2019","unstructured":"Feargus Pendlebury , Fabio Pierazzi , Roberto Jordaney , Johannes Kinder , and Lorenzo Cavallaro . 2019 . TESSERACT: Eliminating experimental bias in malware classification across space and time . In 28th USENIX Security Symposium (USENIX Security 19) . 729--746. Feargus Pendlebury, Fabio Pierazzi, Roberto Jordaney, Johannes Kinder, and Lorenzo Cavallaro. 2019. TESSERACT: Eliminating experimental bias in malware classification across space and time. In 28th USENIX Security Symposium (USENIX Security 19). 729--746."},{"key":"e_1_3_2_1_47_1","doi-asserted-by":"publisher","DOI":"10.1145\/2420950.2420999"},{"key":"e_1_3_2_1_48_1","volume-title":"Tuan Dinh Le, and Thanh Nguyen Vu","author":"Pham Huu-Danh","year":"2018","unstructured":"Huu-Danh Pham , Tuan Dinh Le, and Thanh Nguyen Vu . 2018 . Static PE Malware Detection Using Gradient Boosting Decision Trees Algorithm. In Future Data and Security Engineering, Tran Khanh Dang, Josef K\u00fcng, Roland Wagner, Nam Thoai, and Makoto Takizawa (Eds.). Springer International Publishing , Cham, 228--236. Huu-Danh Pham, Tuan Dinh Le, and Thanh Nguyen Vu. 2018. Static PE Malware Detection Using Gradient Boosting Decision Trees Algorithm. In Future Data and Security Engineering, Tran Khanh Dang, Josef K\u00fcng, Roland Wagner, Nam Thoai, and Makoto Takizawa (Eds.). Springer International Publishing, Cham, 228--236."},{"key":"e_1_3_2_1_49_1","doi-asserted-by":"publisher","DOI":"10.1016\/S0262-8856(97)00070-X"},{"key":"e_1_3_2_1_51_1","unstructured":"PyTorch. 2020 (Accessed June 2020). Training a Classifier. https:\/\/pytorch.org\/ tutorials\/beginner\/blitz\/cifar10_tutorial.html  PyTorch. 2020 (Accessed June 2020). Training a Classifier. https:\/\/pytorch.org\/ tutorials\/beginner\/blitz\/cifar10_tutorial.html"},{"key":"e_1_3_2_1_52_1","unstructured":"Alec Radford Jeff Wu Rewon Child David Luan Dario Amodei and Ilya Sutskever. 2019. Language Models are Unsupervised Multitask Learners. (2019).  Alec Radford Jeff Wu Rewon Child David Luan Dario Amodei and Ilya Sutskever. 2019. Language Models are Unsupervised Multitask Learners. (2019)."},{"key":"e_1_3_2_1_53_1","volume-title":"Malware detection by eating a whole exe. arXiv preprint arXiv:1710.09435","author":"Raff Edward","year":"2017","unstructured":"Edward Raff , Jon Barker , Jared Sylvester , Robert Brandon , Bryan Catanzaro , and Charles Nicholas . 2017. Malware detection by eating a whole exe. arXiv preprint arXiv:1710.09435 ( 2017 ). Edward Raff, Jon Barker, Jared Sylvester, Robert Brandon, Bryan Catanzaro, and Charles Nicholas. 2017. Malware detection by eating a whole exe. arXiv preprint arXiv:1710.09435 (2017)."},{"key":"e_1_3_2_1_54_1","doi-asserted-by":"publisher","DOI":"10.1007\/s11416-016-0283-1"},{"key":"e_1_3_2_1_55_1","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/D16-1264"},{"key":"e_1_3_2_1_56_1","volume-title":"Proceedings of InfoSec Southwest.","author":"Raman Karthik","year":"2012","unstructured":"Karthik Raman . 2012 . Selecting Features to Classify Malware . In Proceedings of InfoSec Southwest. Karthik Raman. 2012. Selecting Features to Classify Malware. In Proceedings of InfoSec Southwest."},{"key":"e_1_3_2_1_57_1","unstructured":"Marco Ramilli. 2016 (Accessed February 2020). Malware Training Sets: a machine learning dataset for everyone. https:\/\/marcoramilli.com\/2016\/12\/16\/malwaretraining-sets-a-machine-learning-dataset-for-everyone\/  Marco Ramilli. 2016 (Accessed February 2020). Malware Training Sets: a machine learning dataset for everyone. https:\/\/marcoramilli.com\/2016\/12\/16\/malwaretraining-sets-a-machine-learning-dataset-for-everyone\/"},{"key":"e_1_3_2_1_58_1","volume-title":"Microsoft Malware Classification Challenge. CoRR abs\/1802.10135","author":"Ronen Royi","year":"2018","unstructured":"Royi Ronen , Marian Radu , Corina Feuerstein , Elad Yom-Tov , and Mansour Ahmadi . 2018. Microsoft Malware Classification Challenge. CoRR abs\/1802.10135 ( 2018 ). Royi Ronen, Marian Radu, Corina Feuerstein, Elad Yom-Tov, and Mansour Ahmadi. 2018. Microsoft Malware Classification Challenge. CoRR abs\/1802.10135 (2018)."},{"key":"e_1_3_2_1_59_1","volume-title":"Peter Van Beek, and Toby Walsh","author":"Rossi Francesca","year":"2006","unstructured":"Francesca Rossi , Peter Van Beek, and Toby Walsh . 2006 . Handbook of constraint programming. Elsevier . Francesca Rossi, Peter Van Beek, and Toby Walsh. 2006. Handbook of constraint programming. Elsevier."},{"key":"e_1_3_2_1_60_1","unstructured":"Phil Roth. 2019 (Accessed April 2020). EMBER Improvements. https:\/\/www. camlis.org\/2019\/talks\/roth Part of CAMLIS.  Phil Roth. 2019 (Accessed April 2020). EMBER Improvements. https:\/\/www. camlis.org\/2019\/talks\/roth Part of CAMLIS."},{"key":"e_1_3_2_1_61_1","volume-title":"https: \/\/www.elastic.co\/blog\/extending-ember [Accessed","author":"Roth Phil","year":"2020","unstructured":"Phil Roth , Hyrum Anderson , and Sven Cattell . 2019. Extending EMBER. https: \/\/www.elastic.co\/blog\/extending-ember [Accessed April 2020 ]. Phil Roth, Hyrum Anderson, and Sven Cattell. 2019. Extending EMBER. https: \/\/www.elastic.co\/blog\/extending-ember [Accessed April 2020]."},{"key":"e_1_3_2_1_62_1","volume-title":"Harang","author":"Rudd Ethan M.","year":"2019","unstructured":"Ethan M. Rudd , Felipe N. Ducau , Cody Wild , Konstantin Berlin , and Richard E . Harang . 2019 . ALOHA : Auxiliary Loss Optimization for Hypothesis Augmentation. CoRR abs\/1903.05700 (2019). http:\/\/arxiv.org\/abs\/1903.05700 Ethan M. Rudd, Felipe N. Ducau, Cody Wild, Konstantin Berlin, and Richard E. Harang. 2019. ALOHA: Auxiliary Loss Optimization for Hypothesis Augmentation. CoRR abs\/1903.05700 (2019). http:\/\/arxiv.org\/abs\/1903.05700"},{"key":"e_1_3_2_1_63_1","volume-title":"Towards the first adversarially robust neural network model on MNIST. CoRR abs\/1805.09190","author":"Schott Lukas","year":"2018","unstructured":"Lukas Schott , Jonas Rauber , Matthias Bethge , and Wieland Brendel . 2018. Towards the first adversarially robust neural network model on MNIST. CoRR abs\/1805.09190 ( 2018 ). Lukas Schott, Jonas Rauber, Matthias Bethge, and Wieland Brendel. 2018. Towards the first adversarially robust neural network model on MNIST. CoRR abs\/1805.09190 (2018)."},{"key":"e_1_3_2_1_64_1","doi-asserted-by":"crossref","unstructured":"Julian Schrittwieser Ioannis Antonoglou Thomas Hubert Karen Simonyan Laurent Sifre Simon Schmitt Arthur Guez Edward Lockhart Demis Hassabis Thore Graepel etal 2019. Mastering atari go chess and shogi by planning with a learned model. arXiv preprint arXiv:1911.08265 (2019).  Julian Schrittwieser Ioannis Antonoglou Thomas Hubert Karen Simonyan Laurent Sifre Simon Schmitt Arthur Guez Edward Lockhart Demis Hassabis Thore Graepel et al. 2019. Mastering atari go chess and shogi by planning with a learned model. arXiv preprint arXiv:1911.08265 (2019).","DOI":"10.1038\/s41586-020-03051-4"},{"key":"e_1_3_2_1_65_1","volume-title":"6th International Conference on Learning Representations, ICLR 2018, Vancouver, BC, Canada, April 30 - May 3, 2018, Workshop Track Proceedings. OpenReview.net.","author":"Sculley David","year":"2018","unstructured":"David Sculley , Jasper Snoek , Alexander B. Wiltschko , and Ali Rahimi . 2018 . Winner's Curse? On Pace, Progress, and Empirical Rigor . In 6th International Conference on Learning Representations, ICLR 2018, Vancouver, BC, Canada, April 30 - May 3, 2018, Workshop Track Proceedings. OpenReview.net. David Sculley, Jasper Snoek, Alexander B. Wiltschko, and Ali Rahimi. 2018. Winner's Curse? On Pace, Progress, and Empirical Rigor. In 6th International Conference on Learning Representations, ICLR 2018, Vancouver, BC, Canada, April 30 - May 3, 2018, Workshop Track Proceedings. OpenReview.net."},{"key":"e_1_3_2_1_66_1","doi-asserted-by":"crossref","unstructured":"Marcos Sebasti\u00e1n Richard Rivera Platon Kotzias and Juan Caballero. 2016. AVclass: A Tool for Massive Malware Labeling. In Proceedings of the International Symposium on Research in Attacks Intrusions and Defenses (Lecture Notes in Computer Science) Fabian Monrose Marc Dacier Gregory Blanc and Joaqu\u00edn Garc\u00eda-Alfaro (Eds.) Vol. 9854. Springer 230--253.  Marcos Sebasti\u00e1n Richard Rivera Platon Kotzias and Juan Caballero. 2016. AVclass: A Tool for Massive Malware Labeling. In Proceedings of the International Symposium on Research in Attacks Intrusions and Defenses (Lecture Notes in Computer Science) Fabian Monrose Marc Dacier Gregory Blanc and Joaqu\u00edn Garc\u00eda-Alfaro (Eds.) Vol. 9854. Springer 230--253.","DOI":"10.1007\/978-3-319-45719-2_11"},{"key":"e_1_3_2_1_67_1","volume-title":"DIMVA 2018, Proceedings (Lecture Notes in Computer Science). Springer-Verlag, 3--23","author":"Severi Giorgio","year":"2018","unstructured":"Giorgio Severi , Tim Leek , and Brendan Dolan-Gavitt . 2018 . Malrec: Compact fulltrace malware recording for retrospective deep analysis. In Detection of Intrusions and Malware, and Vulnerability Assessment - 15th International Conference , DIMVA 2018, Proceedings (Lecture Notes in Computer Science). Springer-Verlag, 3--23 . Giorgio Severi, Tim Leek, and Brendan Dolan-Gavitt. 2018. Malrec: Compact fulltrace malware recording for retrospective deep analysis. In Detection of Intrusions and Malware, and Vulnerability Assessment - 15th International Conference, DIMVA 2018, Proceedings (Lecture Notes in Computer Science). Springer-Verlag, 3--23."},{"key":"e_1_3_2_1_68_1","volume-title":"Recent Advances in Intrusion Detection","author":"Shafiq M. Zubair","unstructured":"M. Zubair Shafiq , S. Momina Tabish , Fauzan Mirza , and Muddassar Farooq . 2009. PE-Miner: Mining Structural Information to Detect Malicious Executables in Realtime . In Recent Advances in Intrusion Detection , Engin Kirda, Somesh Jha, and Davide Balzarotti (Eds.). Springer Berlin Heidelberg , Berlin, Heidelberg , 121--141. M. Zubair Shafiq, S. Momina Tabish, Fauzan Mirza, and Muddassar Farooq. 2009. PE-Miner: Mining Structural Information to Detect Malicious Executables in Realtime. In Recent Advances in Intrusion Detection, Engin Kirda, Somesh Jha, and Davide Balzarotti (Eds.). Springer Berlin Heidelberg, Berlin, Heidelberg, 121--141."},{"key":"e_1_3_2_1_69_1","unstructured":"Micha Sharir Amir Pnueli etal 1978. Two approaches to interprocedural data flow analysis. New York University. Courant Institute of Mathematical Sciences....  Micha Sharir Amir Pnueli et al. 1978. Two approaches to interprocedural data flow analysis. New York University. Courant Institute of Mathematical Sciences...."},{"key":"e_1_3_2_1_70_1","unstructured":"Samarth Sinha Animesh Garg and Hugo Larochelle. 2020. Curriculum By Texture. arXiv:2003.01367 [cs.LG]  Samarth Sinha Animesh Garg and Hugo Larochelle. 2020. Curriculum By Texture. arXiv:2003.01367 [cs.LG]"},{"key":"e_1_3_2_1_71_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICMLA.2018.00011"},{"key":"e_1_3_2_1_72_1","doi-asserted-by":"publisher","DOI":"10.1007\/s10994-013-5422-z"},{"key":"e_1_3_2_1_73_1","volume-title":"Outside the Closed World: On Using Machine Learning for Network Intrusion Detection. In 2010 IEEE Symposium on Security and Privacy. 305--316","author":"Sommer R.","unstructured":"R. Sommer and V. Paxson . 2010 . Outside the Closed World: On Using Machine Learning for Network Intrusion Detection. In 2010 IEEE Symposium on Security and Privacy. 305--316 . R. Sommer and V. Paxson. 2010. Outside the Closed World: On Using Machine Learning for Network Intrusion Detection. In 2010 IEEE Symposium on Security and Privacy. 305--316."},{"key":"e_1_3_2_1_75_1","volume-title":"Proceedings of the Thirty-First AAAI Conference on Artificial Intelligence","author":"Szegedy Christian","unstructured":"Christian Szegedy , Sergey Ioffe , Vincent Vanhoucke , and Alexander A. Alemi . 2017. Inception-v4, Inception-ResNet and the Impact of Residual Connections on Learning . In Proceedings of the Thirty-First AAAI Conference on Artificial Intelligence ( San Francisco, California, USA) (AAAI'17). AAAI Press, 4278--4284. Christian Szegedy, Sergey Ioffe, Vincent Vanhoucke, and Alexander A. Alemi. 2017. Inception-v4, Inception-ResNet and the Impact of Residual Connections on Learning. In Proceedings of the Thirty-First AAAI Conference on Artificial Intelligence (San Francisco, California, USA) (AAAI'17). AAAI Press, 4278--4284."},{"key":"e_1_3_2_1_76_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2003.1238354"},{"key":"e_1_3_2_1_77_1","first-page":"I","article-title":"Attention is All you Need","volume":"30","author":"Vaswani Ashish","year":"2017","unstructured":"Ashish Vaswani , Noam Shazeer , Niki Parmar , Jakob Uszkoreit , Llion Jones , Aidan N Gomez , \u0141ukasz Kaiser , and Illia Polosukhin . 2017 . Attention is All you Need . In Advances in Neural Information Processing Systems 30 , I . Guyon, U. V. Luxburg, S. Bengio, H. Wallach, R. Fergus, S. Vishwanathan, and R. Garnett (Eds.). Curran Associates, Inc., 5998--6008. http:\/\/papers.nips.cc\/paper\/7181-attentionis-all-you-need.pdf Ashish Vaswani, Noam Shazeer, Niki Parmar, Jakob Uszkoreit, Llion Jones, Aidan N Gomez, \u0141ukasz Kaiser, and Illia Polosukhin. 2017. Attention is All you Need. In Advances in Neural Information Processing Systems 30, I. Guyon, U. V. Luxburg, S. Bengio, H. Wallach, R. Fergus, S. Vishwanathan, and R. Garnett (Eds.). Curran Associates, Inc., 5998--6008. http:\/\/papers.nips.cc\/paper\/7181-attentionis-all-you-need.pdf","journal-title":"Advances in Neural Information Processing Systems"},{"key":"e_1_3_2_1_78_1","volume-title":"Enigma 2018 (Enigma","author":"Vigna Giovanni","year":"2018","unstructured":"Giovanni Vigna and Davide Balzarotti . 2018. When malware is packin? heat . In Enigma 2018 (Enigma 2018 ). Giovanni Vigna and Davide Balzarotti. 2018. When malware is packin? heat. In Enigma 2018 (Enigma 2018)."},{"key":"e_1_3_2_1_79_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2906934"},{"key":"e_1_3_2_1_80_1","volume-title":"2017 IFIP\/IEEE Symposium on Integrated Network and Service Management (IM). 941--946","author":"Vyas R.","unstructured":"R. Vyas , X. Luo , N. McFarland , and C. Justice . 2017. Investigation of malicious portable executable file detection on the network using supervised learning techniques . In 2017 IFIP\/IEEE Symposium on Integrated Network and Service Management (IM). 941--946 . R. Vyas, X. Luo, N. McFarland, and C. Justice. 2017. Investigation of malicious portable executable file detection on the network using supervised learning techniques. In 2017 IFIP\/IEEE Symposium on Integrated Network and Service Management (IM). 941--946."},{"key":"e_1_3_2_1_81_1","unstructured":"Xiaozhou Wang Jiwei Liu and Xueer Chen. 2015 (Accessed July 2020). Microsoft Malware Classification Challenge (BIG 2015): First Place Team: Say No to Overfitting. https:\/\/github.com\/xiaozhouwang\/kaggle_Microsoft_Malware  Xiaozhou Wang Jiwei Liu and Xueer Chen. 2015 (Accessed July 2020). Microsoft Malware Classification Challenge (BIG 2015): First Place Team: Say No to Overfitting. https:\/\/github.com\/xiaozhouwang\/kaggle_Microsoft_Malware"},{"key":"e_1_3_2_1_82_1","volume-title":"Proceedings of the 32nd International Conference on Machine Learning (Proceedings of Machine Learning Research), Francis Bach and David Blei (Eds.)","volume":"37","author":"Xu Kelvin","year":"2015","unstructured":"Kelvin Xu , Jimmy Ba , Ryan Kiros , Kyunghyun Cho , Aaron Courville , Ruslan Salakhudinov , Rich Zemel , and Yoshua Bengio . 2015 . Show, Attend and Tell: Neural Image Caption Generation with Visual Attention . In Proceedings of the 32nd International Conference on Machine Learning (Proceedings of Machine Learning Research), Francis Bach and David Blei (Eds.) , Vol. 37 . PMLR, Lille, France , 2048--2057. Kelvin Xu, Jimmy Ba, Ryan Kiros, Kyunghyun Cho, Aaron Courville, Ruslan Salakhudinov, Rich Zemel, and Yoshua Bengio. 2015. Show, Attend and Tell: Neural Image Caption Generation with Visual Attention. In Proceedings of the 32nd International Conference on Machine Learning (Proceedings of Machine Learning Research), Francis Bach and David Blei (Eds.), Vol. 37. PMLR, Lille, France, 2048--2057."},{"key":"e_1_3_2_1_83_1","volume-title":"Neural Malware Analysis with Attention Mechanism. Computers & Security (08","author":"Yakura Hiromu","year":"2019","unstructured":"Hiromu Yakura , Shinnosuke Shinozaki , Reon Nishimura , Yoshihiro Oyama , and Jun Sakuma . 2019. Neural Malware Analysis with Attention Mechanism. Computers & Security (08 2019 ), 101592. https:\/\/doi.org\/10.1016\/j.cose.2019.101592 10.1016\/j.cose.2019.101592 Hiromu Yakura, Shinnosuke Shinozaki, Reon Nishimura, Yoshihiro Oyama, and Jun Sakuma. 2019. Neural Malware Analysis with Attention Mechanism. Computers & Security (08 2019), 101592. https:\/\/doi.org\/10.1016\/j.cose.2019.101592"},{"key":"e_1_3_2_1_84_1","volume-title":"Detection of Intrusions and Malware","author":"Yan Guanhua","unstructured":"Guanhua Yan , Nathan Brown , and Deguang Kong . 2013. Exploring Discriminatory Features for Automated Malware Classification . In Detection of Intrusions and Malware , and Vulnerability Assessment, Konrad Rieck, Patrick Stewin, and JeanPierre Seifert (Eds.). Springer Berlin Heidelberg, Berlin , Heidelberg , 41--61. Guanhua Yan, Nathan Brown, and Deguang Kong. 2013. Exploring Discriminatory Features for Automated Malware Classification. In Detection of Intrusions and Malware, and Vulnerability Assessment, Konrad Rieck, Patrick Stewin, and JeanPierre Seifert (Eds.). Springer Berlin Heidelberg, Berlin, Heidelberg, 41--61."},{"key":"e_1_3_2_1_85_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978304"}],"event":{"name":"CCS '20: 2020 ACM SIGSAC Conference on Computer and Communications Security","location":"Virtual Event USA","acronym":"CCS '20","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 13th ACM Workshop on Artificial Intelligence and Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3411508.3421373","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/abs\/10.1145\/3411508.3421373","content-type":"text\/html","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3411508.3421373","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3411508.3421373","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T22:02:37Z","timestamp":1750197757000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3411508.3421373"}},"subtitle":["On Bridging the Semantic Gap between Machine Learning and Malware Analysis"],"short-title":[],"issued":{"date-parts":[[2020,11,9]]},"references-count":82,"alternative-id":["10.1145\/3411508.3421373","10.1145\/3411508"],"URL":"https:\/\/doi.org\/10.1145\/3411508.3421373","relation":{},"subject":[],"published":{"date-parts":[[2020,11,9]]},"assertion":[{"value":"2020-11-09","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}