{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,15]],"date-time":"2026-07-15T16:47:46Z","timestamp":1784134066646,"version":"3.55.0"},"publisher-location":"New York, NY, USA","reference-count":44,"publisher":"ACM","license":[{"start":{"date-parts":[[2022,11,7]],"date-time":"2022-11-07T00:00:00Z","timestamp":1667779200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2022,11,11]]},"DOI":"10.1145\/3560830.3563726","type":"proceedings-article","created":{"date-parts":[[2022,11,2]],"date-time":"2022-11-02T22:32:41Z","timestamp":1667428361000},"page":"127-136","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":20,"title":["Quo Vadis: Hybrid Machine Learning Meta-Model Based on Contextual and Behavioral Malware Representations"],"prefix":"10.1145","author":[{"given":"Dmitrijs","family":"Trizna","sequence":"first","affiliation":[{"name":"Microsoft Corporation, Prague, Czech Rep"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2022,11,7]]},"reference":[{"key":"e_1_3_2_2_1_1","unstructured":"Abien Fred Agarap. 2019. Deep Learning using Rectified Linear Units (ReLU). arXiv:1803.08375 [cs.NE]  Abien Fred Agarap. 2019. Deep Learning using Rectified Linear Units (ReLU). arXiv:1803.08375 [cs.NE]"},{"key":"e_1_3_2_2_2_1","doi-asserted-by":"crossref","unstructured":"Rakshit Agrawal Jack W. Stokes Mady Marinescu and Karthik Selvaraj. 2018. Robust Neural Malware Detection Models for Emulation Sequence Learning. arXiv:1806.10741 [cs.AI]  Rakshit Agrawal Jack W. Stokes Mady Marinescu and Karthik Selvaraj. 2018. Robust Neural Malware Detection Models for Emulation Sequence Learning. arXiv:1806.10741 [cs.AI]","DOI":"10.1109\/MILCOM.2018.8599785"},{"key":"e_1_3_2_2_3_1","unstructured":"Hyrum S. Anderson Anant Kharkar Bobby Filar David Evans and Phil Roth. 2018. Learning to Evade Static PE Machine Learning Malware Models via Reinforcement Learning. arXiv:1801.08917 [cs.CR]  Hyrum S. Anderson Anant Kharkar Bobby Filar David Evans and Phil Roth. 2018. Learning to Evade Static PE Machine Learning Malware Models via Reinforcement Learning. arXiv:1801.08917 [cs.CR]"},{"key":"e_1_3_2_2_4_1","volume-title":"Anderson and Phil Roth","author":"Hyrum","year":"2018","unstructured":"Hyrum S. Anderson and Phil Roth . 2018 . EMBER : An Open Dataset for Training Static PE Malware Machine Learning Models . arXiv:1804.04637 [cs.CR] Hyrum S. Anderson and Phil Roth. 2018. EMBER: An Open Dataset for Training Static PE Malware Machine Learning Models. arXiv:1804.04637 [cs.CR]"},{"key":"e_1_3_2_2_5_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP.2017.7952603"},{"key":"e_1_3_2_2_6_1","volume-title":"Jamie Ryan Kiros, and Geoffrey E. Hinton","author":"Ba Jimmy Lei","year":"2016","unstructured":"Jimmy Lei Ba , Jamie Ryan Kiros, and Geoffrey E. Hinton . 2016 . Layer Normalization . https:\/\/doi.org\/10.48550\/ARXIV.1607.06450 10.48550\/ARXIV.1607.06450 Jimmy Lei Ba, Jamie Ryan Kiros, and Geoffrey E. Hinton. 2016. Layer Normalization. https:\/\/doi.org\/10.48550\/ARXIV.1607.06450"},{"key":"e_1_3_2_2_7_1","doi-asserted-by":"publisher","DOI":"10.5555\/1247360.1247401"},{"key":"e_1_3_2_2_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/2939672.2939785"},{"key":"#cr-split#-e_1_3_2_2_9_1.1","unstructured":"Junyoung Chung Caglar Gulcehre KyungHyun Cho and Yoshua Bengio. 2014. Empirical Evaluation of Gated Recurrent Neural Networks on Sequence Modeling. https:\/\/doi.org\/10.48550\/ARXIV.1412.3555 10.48550\/ARXIV.1412.3555"},{"key":"#cr-split#-e_1_3_2_2_9_1.2","unstructured":"Junyoung Chung Caglar Gulcehre KyungHyun Cho and Yoshua Bengio. 2014. Empirical Evaluation of Gated Recurrent Neural Networks on Sequence Modeling. https:\/\/doi.org\/10.48550\/ARXIV.1412.3555"},{"key":"#cr-split#-e_1_3_2_2_10_1.1","unstructured":"Djork-Arn\u00e9 Clevert Thomas Unterthiner and Sepp Hochreiter. 2015. Fast and Accurate Deep Network Learning by Exponential Linear Units (ELUs). https:\/\/doi.org\/10.48550\/ARXIV.1511.07289 10.48550\/ARXIV.1511.07289"},{"key":"#cr-split#-e_1_3_2_2_10_1.2","unstructured":"Djork-Arn\u00e9 Clevert Thomas Unterthiner and Sepp Hochreiter. 2015. Fast and Accurate Deep Network Learning by Exponential Linear Units (ELUs). https:\/\/doi.org\/10.48550\/ARXIV.1511.07289"},{"key":"e_1_3_2_2_11_1","unstructured":"Luca Demetrio and Battista Biggio. 2021. secml-malware: A Python Library for Adversarial Robustness Evaluation of Windows Malware Classifiers. arXiv:2104.12848 [cs.CR]  Luca Demetrio and Battista Biggio. 2021. secml-malware: A Python Library for Adversarial Robustness Evaluation of Windows Malware Classifiers. arXiv:2104.12848 [cs.CR]"},{"key":"e_1_3_2_2_12_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3082330"},{"key":"e_1_3_2_2_13_1","volume-title":"Long Short-term Memory. Neural computation 9 (12","author":"Hochreiter Sepp","year":"1997","unstructured":"Sepp Hochreiter and J\u00fcrgen Schmidhuber . 1997. Long Short-term Memory. Neural computation 9 (12 1997 ), 1735--80. https:\/\/doi.org\/10.1162\/neco.1997.9.8.1735 10.1162\/neco.1997.9.8.1735 Sepp Hochreiter and J\u00fcrgen Schmidhuber. 1997. Long Short-term Memory. Neural computation 9 (12 1997), 1735--80. https:\/\/doi.org\/10.1162\/neco.1997.9.8.1735"},{"key":"e_1_3_2_2_14_1","volume-title":"Batch Normalization: Accelerating Deep Network Training by Reducing Internal Covariate Shift. arXiv:1502.03167 [cs.LG]","author":"Ioffe Sergey","year":"2015","unstructured":"Sergey Ioffe and Christian Szegedy . 2015 . Batch Normalization: Accelerating Deep Network Training by Reducing Internal Covariate Shift. arXiv:1502.03167 [cs.LG] Sergey Ioffe and Christian Szegedy. 2015. Batch Normalization: Accelerating Deep Network Training by Reducing Internal Covariate Shift. arXiv:1502.03167 [cs.LG]"},{"key":"e_1_3_2_2_15_1","volume-title":"Advances in Neural Information Processing Systems","author":"Ke Guolin","year":"2017","unstructured":"Guolin Ke , Qi Meng , Thomas Finley , Taifeng Wang , Wei Chen , Weidong Ma , Qiwei Ye , and Tie-Yan Liu . 2017. LightGBM: A Highly Efficient Gradient Boosting Decision Tree . In Advances in Neural Information Processing Systems , I. Guyon, U. V. Luxburg, S. Bengio, H. Wallach, R. Fergus, S. Vishwanathan, and R. Garnett (Eds.), Vol. 30 . Curran Associates, Inc. , Long Beach, CA . https:\/\/proceedings.neurips.cc\/paper\/ 2017 \/file\/6449f44a102fde848669bdd9eb6b76fa-Paper.pdf Guolin Ke, Qi Meng, Thomas Finley, Taifeng Wang, Wei Chen, Weidong Ma, Qiwei Ye, and Tie-Yan Liu. 2017. LightGBM: A Highly Efficient Gradient Boosting Decision Tree. In Advances in Neural Information Processing Systems, I. Guyon, U. V. Luxburg, S. Bengio, H. Wallach, R. Fergus, S. Vishwanathan, and R. Garnett (Eds.), Vol. 30. Curran Associates, Inc., Long Beach, CA. https:\/\/proceedings.neurips.cc\/paper\/2017\/file\/6449f44a102fde848669bdd9eb6b76fa-Paper.pdf"},{"key":"e_1_3_2_2_16_1","volume-title":"Kingma and Jimmy Ba","author":"Diederik","year":"2017","unstructured":"Diederik P. Kingma and Jimmy Ba . 2017 . Adam : A Method for Stochastic Optimization . arXiv:1412.6980 [cs.LG] Diederik P. Kingma and Jimmy Ba. 2017. Adam: A Method for Stochastic Optimization. arXiv:1412.6980 [cs.LG]"},{"key":"e_1_3_2_2_17_1","volume-title":"Adversarial Malware Binaries: Evading Deep Learning for Malware Detection in Executables. CoRR abs\/1803.04173","author":"Kolosnjaji Bojan","year":"2018","unstructured":"Bojan Kolosnjaji , Ambra Demontis , Battista Biggio , DavideMaiorca, Giorgio Giacinto , Claudia Eckert , and Fabio Roli . 2018. Adversarial Malware Binaries: Evading Deep Learning for Malware Detection in Executables. CoRR abs\/1803.04173 ( 2018 ). arXiv:1803.04173 http:\/\/arxiv.org\/abs\/1803.04173 Bojan Kolosnjaji, Ambra Demontis, Battista Biggio, DavideMaiorca, Giorgio Giacinto, Claudia Eckert, and Fabio Roli. 2018. Adversarial Malware Binaries: Evading Deep Learning for Malware Detection in Executables. CoRR abs\/1803.04173 (2018). arXiv:1803.04173 http:\/\/arxiv.org\/abs\/1803.04173"},{"key":"e_1_3_2_2_18_1","volume-title":"Deep Learning for Classification of Malware System Call Sequences. In AI 2016: Advances in Artificial Intelligence","volume":"9992","author":"Kolosnjaji Bojan","year":"2016","unstructured":"Bojan Kolosnjaji , Apostolis Zarras , George Webster , and Claudia Eckert . 2016 . Deep Learning for Classification of Malware System Call Sequences. In AI 2016: Advances in Artificial Intelligence , Vol. 9992 . 29th Australasian Joint Conference, Hobart, TAS, Australia, 137--149. https:\/\/doi.org\/10.1007\/978--3--319--50127--7_11 10.1007\/978--3--319--50127--7_11 Bojan Kolosnjaji, Apostolis Zarras, George Webster, and Claudia Eckert. 2016. Deep Learning for Classification of Malware System Call Sequences. In AI 2016: Advances in Artificial Intelligence, Vol. 9992. 29th Australasian Joint Conference, Hobart, TAS, Australia, 137--149. https:\/\/doi.org\/10.1007\/978--3--319--50127--7_11"},{"key":"e_1_3_2_2_19_1","volume-title":"Deceiving Portable Executable Malware Classifiers into Targeted Misclassification with Practical Adversarial Examples","author":"Kucuk Yunus","unstructured":"Yunus Kucuk and Guanhua Yan . 2020. Deceiving Portable Executable Malware Classifiers into Targeted Misclassification with Practical Adversarial Examples . Association for Computing Machinery , New York, NY, USA , 341--352. https:\/\/doi.org\/10.1145\/3374664.3375741 10.1145\/3374664.3375741 Yunus Kucuk and Guanhua Yan. 2020. Deceiving Portable Executable Malware Classifiers into Targeted Misclassification with Practical Adversarial Examples. Association for Computing Machinery, New York, NY, USA, 341--352. https:\/\/doi.org\/10.1145\/3374664.3375741"},{"key":"e_1_3_2_2_20_1","doi-asserted-by":"publisher","DOI":"10.1109\/SPW50608.2020.00018"},{"key":"e_1_3_2_2_21_1","unstructured":"Xigao Li David Krisiloff and Scott Coull. 2021. Lightweight Emulation-Assisted Malware Classification.  Xigao Li David Krisiloff and Scott Coull. 2021. Lightweight Emulation-Assisted Malware Classification."},{"key":"e_1_3_2_2_22_1","volume-title":"Electronic and Automation Control Conference. IEEE Information Technology","author":"Ma Xinjian","year":"2016","unstructured":"Xinjian Ma , Qi Biao , Wu Yang , and Jianguo Jiang . 2016 . Using multi-features to reduce false positive in malware classification. In 2016 IEEE Information Technology, Networking , Electronic and Automation Control Conference. IEEE Information Technology , San Francisco, CA, USA, 361--365. https:\/\/doi.org\/10.1109\/ITNEC. 2016.7560382 10.1109\/ITNEC.2016.7560382 Xinjian Ma, Qi Biao, Wu Yang, and Jianguo Jiang. 2016. Using multi-features to reduce false positive in malware classification. In 2016 IEEE Information Technology, Networking, Electronic and Automation Control Conference. IEEE Information Technology, San Francisco, CA, USA, 361--365. https:\/\/doi.org\/10.1109\/ITNEC.2016.7560382"},{"key":"e_1_3_2_2_23_1","unstructured":"Mandiant. 2021. Speakeasy: portable modular binary emulator designed to emulate Windows kernel and user mode malware. https:\/\/github.com\/mandiant\/speakeasy.  Mandiant. 2021. Speakeasy: portable modular binary emulator designed to emulate Windows kernel and user mode malware. https:\/\/github.com\/mandiant\/speakeasy."},{"key":"e_1_3_2_2_24_1","volume-title":"PyTorch: An Imperative Style","author":"Paszke Adam","unstructured":"Adam Paszke , Sam Gross , Francisco Massa , Adam Lerer , James Bradbury , Gregory Chanan , Trevor Killeen , Zeming Lin , Natalia Gimelshein , Luca Antiga , Alban Desmaison , Andreas Kopf , Edward Yang , Zachary DeVito , Martin Raison , Alykhan Tejani , Sasank Chilamkurthy , Benoit Steiner , Lu Fang , Junjie Bai , and Soumith Chintala . 2019. PyTorch: An Imperative Style , High-Performance Deep Learning Library . In Advances in Neural Information Processing Systems 32, H. Wallach, H. Larochelle, A. Beygelzimer, F. d'Alch\u00e9-Buc, E. Fox, and R. Garnett (Eds.). Curran Associates, Inc., pytorch.org, 8024--8035. Adam Paszke, Sam Gross, Francisco Massa, Adam Lerer, James Bradbury, Gregory Chanan, Trevor Killeen, Zeming Lin, Natalia Gimelshein, Luca Antiga, Alban Desmaison, Andreas Kopf, Edward Yang, Zachary DeVito, Martin Raison, Alykhan Tejani, Sasank Chilamkurthy, Benoit Steiner, Lu Fang, Junjie Bai, and Soumith Chintala. 2019. PyTorch: An Imperative Style, High-Performance Deep Learning Library. In Advances in Neural Information Processing Systems 32, H. Wallach, H. Larochelle, A. Beygelzimer, F. d'Alch\u00e9-Buc, E. Fox, and R. Garnett (Eds.). Curran Associates, Inc., pytorch.org, 8024--8035."},{"key":"e_1_3_2_2_25_1","doi-asserted-by":"publisher","DOI":"10.5555\/1953048.2078195"},{"key":"e_1_3_2_2_26_1","unstructured":"Edward Raff Jon Barker Jared Sylvester Robert Brandon Bryan Catanzaro and Charles Nicholas. 2017. Malware Detection by Eating a Whole EXE. arXiv:1710.09435 [stat.ML]  Edward Raff Jon Barker Jared Sylvester Robert Brandon Bryan Catanzaro and Charles Nicholas. 2017. Malware Detection by Eating a Whole EXE. arXiv:1710.09435 [stat.ML]"},{"key":"#cr-split#-e_1_3_2_2_27_1.1","doi-asserted-by":"crossref","unstructured":"Edward Raff Bobby Filar and James Holt. 2020. Getting Passive Aggressive About False Positives: Patching Deployed Malware Detectors. https:\/\/doi.org\/ 10.48550\/ARXIV.2010.12080 10.48550\/ARXIV.2010.12080","DOI":"10.1109\/ICDMW51313.2020.00074"},{"key":"#cr-split#-e_1_3_2_2_27_1.2","doi-asserted-by":"crossref","unstructured":"Edward Raff Bobby Filar and James Holt. 2020. Getting Passive Aggressive About False Positives: Patching Deployed Malware Detectors. https:\/\/doi.org\/ 10.48550\/ARXIV.2010.12080","DOI":"10.1109\/ICDMW51313.2020.00074"},{"key":"e_1_3_2_2_28_1","volume-title":"Query- Efficient Black-Box Attack Against Sequence-Based Malware Classifiers. In Annual Computer Security Applications Conference","author":"Rosenberg Ishai","year":"2020","unstructured":"Ishai Rosenberg , Asaf Shabtai , Yuval Elovici , and Lior Rokach . 2020 . Query- Efficient Black-Box Attack Against Sequence-Based Malware Classifiers. In Annual Computer Security Applications Conference ( Austin, USA) (ACSAC '20). Association for Computing Machinery, New York, NY, USA, 611--626. https:\/\/doi.org\/10.1145\/3427228.3427230 10.1145\/3427228.3427230 Ishai Rosenberg, Asaf Shabtai, Yuval Elovici, and Lior Rokach. 2020. Query- Efficient Black-Box Attack Against Sequence-Based Malware Classifiers. In Annual Computer Security Applications Conference (Austin, USA) (ACSAC '20). Association for Computing Machinery, New York, NY, USA, 611--626. https:\/\/doi.org\/10.1145\/3427228.3427230"},{"key":"e_1_3_2_2_29_1","volume-title":"ALOHA: Auxiliary Loss Optimization for Hypothesis Augmentation. arXiv:1903.05700 [cs.CR]","author":"Rudd Ethan M.","year":"2019","unstructured":"Ethan M. Rudd , Felipe N. Ducau , Cody Wild , Konstantin Berlin , and Richard Harang . 2019 . ALOHA: Auxiliary Loss Optimization for Hypothesis Augmentation. arXiv:1903.05700 [cs.CR] Ethan M. Rudd, Felipe N. Ducau, Cody Wild, Konstantin Berlin, and Richard Harang. 2019. ALOHA: Auxiliary Loss Optimization for Hypothesis Augmentation. arXiv:1903.05700 [cs.CR]"},{"key":"e_1_3_2_2_30_1","unstructured":"Joshua Saxe and Konstantin Berlin. 2017. eXpose: A Character-Level Convolutional Neural Network with Embeddings For Detecting Malicious URLs File Paths and Registry Keys. arXiv:1702.08568 [cs.CR]  Joshua Saxe and Konstantin Berlin. 2017. eXpose: A Character-Level Convolutional Neural Network with Embeddings For Detecting Malicious URLs File Paths and Registry Keys. arXiv:1702.08568 [cs.CR]"},{"key":"e_1_3_2_2_31_1","doi-asserted-by":"publisher","DOI":"10.1109\/SECPRI.2001.924286"},{"key":"e_1_3_2_2_32_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.procs.2015.02.149"},{"key":"e_1_3_2_2_33_1","doi-asserted-by":"publisher","DOI":"10.18517\/ijaseit.8.4-2.6827"},{"key":"e_1_3_2_2_34_1","doi-asserted-by":"crossref","unstructured":"Wei Song Xuezixiang Li Sadia Afroz Deepali Garg Dmitry Kuznetsov and Heng Yin. 2021. MAB-Malware: A Reinforcement Learning Framework for Attacking Static Malware Classifiers. arXiv:2003.03100 [cs.CR]  Wei Song Xuezixiang Li Sadia Afroz Deepali Garg Dmitry Kuznetsov and Heng Yin. 2021. MAB-Malware: A Reinforcement Learning Framework for Attacking Static Malware Classifiers. arXiv:2003.03100 [cs.CR]","DOI":"10.1145\/3488932.3497768"},{"key":"e_1_3_2_2_35_1","unstructured":"Anuj Soni and Lenny Zeltser. 2021. FOR610: Reverse-Engineering Malware: Malware Analysis Tools and Techniques.  Anuj Soni and Lenny Zeltser. 2021. FOR610: Reverse-Engineering Malware: Malware Analysis Tools and Techniques."},{"key":"e_1_3_2_2_36_1","doi-asserted-by":"publisher","DOI":"10.5555\/2627435.2670313"},{"key":"e_1_3_2_2_37_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2018.11.001"},{"key":"e_1_3_2_2_38_1","unstructured":"Ming Chuan Yang and Meng Chang Chen. 2019. Theoretical Investigation of Composite Neural Network. arXiv:1910.09351 [cs.LG]  Ming Chuan Yang and Meng Chang Chen. 2019. Theoretical Investigation of Composite Neural Network. arXiv:1910.09351 [cs.LG]"},{"key":"e_1_3_2_2_39_1","volume-title":"Ying Ren Guo, and Meng Chang Chen.","author":"Yen Yao Saint","year":"2019","unstructured":"Yao Saint Yen , Zhe Wei Chen , Ying Ren Guo, and Meng Chang Chen. 2019 . Integration of Static and Dynamic Analysis for Malware Family Classification with Composite Neural Network . arXiv:1912.11249 [cs.CR] Yao Saint Yen, Zhe Wei Chen, Ying Ren Guo, and Meng Chang Chen. 2019. Integration of Static and Dynamic Analysis for Malware Family Classification with Composite Neural Network. arXiv:1912.11249 [cs.CR]"},{"key":"#cr-split#-e_1_3_2_2_40_1.1","unstructured":"Wenpeng Yin Katharina Kann Mo Yu and Hinrich Sch\u00fctze. 2017. Comparative Study of CNN and RNN for Natural Language Processing. https:\/\/doi.org\/10.48550\/ARXIV.1702.01923 10.48550\/ARXIV.1702.01923"},{"key":"#cr-split#-e_1_3_2_2_40_1.2","unstructured":"Wenpeng Yin Katharina Kann Mo Yu and Hinrich Sch\u00fctze. 2017. Comparative Study of CNN and RNN for Natural Language Processing. https:\/\/doi.org\/10.48550\/ARXIV.1702.01923"}],"event":{"name":"CCS '22: 2022 ACM SIGSAC Conference on Computer and Communications Security","location":"Los Angeles CA USA","acronym":"CCS '22","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 15th ACM Workshop on Artificial Intelligence and Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3560830.3563726","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3560830.3563726","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T19:00:34Z","timestamp":1750186834000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3560830.3563726"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,11,7]]},"references-count":44,"alternative-id":["10.1145\/3560830.3563726","10.1145\/3560830"],"URL":"https:\/\/doi.org\/10.1145\/3560830.3563726","relation":{},"subject":[],"published":{"date-parts":[[2022,11,7]]},"assertion":[{"value":"2022-11-07","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}