SANER 2025
Tue 4 - Fri 7 March 2025 Montréal, Québec, Canada
Thu 6 Mar 2025 16:14 - 16:21 at M-2401 - Short Paper & Posters Chair(s): Leuson Da Silva

As software becomes widespread, malware poses a significant threat to information system security. Graph neural networks used in existing machine learning-based methods for malware detection ignore deeper semantic information in code graphs. These methods also lack feature extraction of global data information, resulting in incomplete feature for detection. To address these limitations, we propose a multimodal fusion architecture, MultiMal, that combines function call graphs, control flow graphs, and entropy features to detect PE malware. MultiMal proposes a multi-head softmax module to effectively capture graph features in multiple representation spaces. It also constructs an entropy-based learning module to extract binary features related to data randomness and obfuscation, which are then fused with the graph encoding to better detect malware code pattern. For accurate evaluation, we also introduce a new PE malware dataset with evenly distributed samples over the years and detailed family and category labels. Experiments demonstrate that MultiMal outperforms three existing baselines in terms of effectiveness. At an FPR threshold of 0.1%, the TPR and bACC exceed the best results of the baselines by 11.83% and 5.54%, respectively.

Thu 6 Mar

Displayed time zone: Eastern Time (US & Canada) change

16:00 - 17:00
Short Paper & PostersShort Papers and Posters Track at M-2401
Chair(s): Leuson Da Silva Polytechnique Montreal
16:00
7m
Talk
An Exploratory Study on the Impact of Change-proneness as a Metric in Black-box Test Suite Minimization
Short Papers and Posters Track
Md Siam University of Dhaka, Mridha Md. Nafis Fuad University of Dhaka, Kazi Sakib
Media Attached
16:07
7m
Talk
Evaluating Multi-Modal LLMs for Automatically Recognizing Semantic Elements in UML Use Case Diagram Images
Short Papers and Posters Track
16:14
7m
Talk
MultiMal: Multimodal Fusion Combining Graph and Entropy Features for Malware Detection
Short Papers and Posters Track
He Kaiyan Shanghai Jiao Tong University, Haining Lu Shanghai Jiao Tong University, Dawu Gu Shanghai Jiao Tong University
16:21
7m
Talk
Reduce before you repair: advantages of combining program slicing with automated program repair
Short Papers and Posters Track
Omar I. Al-Bataineh Gran Sasso Science Institute (GSSI)
File Attached
16:28
7m
Talk
Towards Developing Effective Oracles to Reduce Patch Overfitting in Automated Program Repair
Short Papers and Posters Track
Omar I. Al-Bataineh Gran Sasso Science Institute (GSSI)
File Attached
16:35
7m
Talk
Towards Using LLMs in the Reverse Engineering of Software Systems to Object Constraint Language
Short Papers and Posters Track
Hanan Abdulwahab Siala PhD Student in King's College London, Dr Kevin Lano King's College London
Media Attached File Attached
:
:
:
: