{"id":"https://openalex.org/W4412082592","doi":"https://doi.org/10.1109/host64725.2025.11050073","title":"LAPD: Lifecycle-Aware Power-Based Malware Detection","display_name":"LAPD: Lifecycle-Aware Power-Based Malware Detection","publication_year":2025,"publication_date":"2025-05-05","ids":{"openalex":"https://openalex.org/W4412082592","doi":"https://doi.org/10.1109/host64725.2025.11050073"},"language":"en","primary_location":{"id":"doi:10.1109/host64725.2025.11050073","is_oa":false,"landing_page_url":"https://doi.org/10.1109/host64725.2025.11050073","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE International Symposium on Hardware Oriented Security and Trust (HOST)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5114442982","display_name":"Alexander Cathis","orcid":null},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Alexander Cathis","raw_affiliation_strings":["The University of Texas at Austin,Department of Electrical and Computer Engineering"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"The University of Texas at Austin,Department of Electrical and Computer Engineering","institution_ids":["https://openalex.org/I86519309"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5074235406","display_name":"Mulong Luo","orcid":null},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Mulong Luo","raw_affiliation_strings":["The University of Texas at Austin,Department of Electrical and Computer Engineering"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"The University of Texas at Austin,Department of Electrical and Computer Engineering","institution_ids":["https://openalex.org/I86519309"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5071185644","display_name":"Mohit Tiwari","orcid":"https://orcid.org/0000-0003-1836-3451"},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Mohit Tiwari","raw_affiliation_strings":["The University of Texas at Austin,Department of Electrical and Computer Engineering"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"The University of Texas at Austin,Department of Electrical and Computer Engineering","institution_ids":["https://openalex.org/I86519309"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5046024226","display_name":"Andreas Gerstlauer","orcid":"https://orcid.org/0000-0002-6748-2054"},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Andreas Gerstlauer","raw_affiliation_strings":["The University of Texas at Austin,Department of Electrical and Computer Engineering"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"The University of Texas at Austin,Department of Electrical and Computer Engineering","institution_ids":["https://openalex.org/I86519309"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.064,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.77103016,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":95,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"194","last_page":"204"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9969000220298767,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9685999751091003,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.7524601221084595},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6481301784515381},{"id":"https://openalex.org/keywords/power","display_name":"Power (physics)","score":0.4216141700744629},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.399198055267334}],"concepts":[{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.7524601221084595},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6481301784515381},{"id":"https://openalex.org/C163258240","wikidata":"https://www.wikidata.org/wiki/Q25342","display_name":"Power (physics)","level":2,"score":0.4216141700744629},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.399198055267334},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/host64725.2025.11050073","is_oa":false,"landing_page_url":"https://doi.org/10.1109/host64725.2025.11050073","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE International Symposium on Hardware Oriented Security and Trust (HOST)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320306087","display_name":"Semiconductor Research Corporation","ror":"https://ror.org/047z4n946"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":44,"referenced_works":["https://openalex.org/W170772673","https://openalex.org/W1519539754","https://openalex.org/W1534489247","https://openalex.org/W1548656471","https://openalex.org/W1772700132","https://openalex.org/W1981982281","https://openalex.org/W2015142399","https://openalex.org/W2015473519","https://openalex.org/W2016346537","https://openalex.org/W2017371166","https://openalex.org/W2037734761","https://openalex.org/W2040424958","https://openalex.org/W2118000750","https://openalex.org/W2154909745","https://openalex.org/W2157920973","https://openalex.org/W2263741877","https://openalex.org/W2264016719","https://openalex.org/W2295598076","https://openalex.org/W2533642151","https://openalex.org/W2599283228","https://openalex.org/W2792101620","https://openalex.org/W2803720591","https://openalex.org/W2855084460","https://openalex.org/W2890478469","https://openalex.org/W2899733099","https://openalex.org/W2900713154","https://openalex.org/W2906111250","https://openalex.org/W2950860056","https://openalex.org/W2954035222","https://openalex.org/W2977790487","https://openalex.org/W2996744292","https://openalex.org/W3029114445","https://openalex.org/W3036557299","https://openalex.org/W3037967698","https://openalex.org/W3083733629","https://openalex.org/W3126895910","https://openalex.org/W3153001680","https://openalex.org/W3193361787","https://openalex.org/W3210911509","https://openalex.org/W4200318794","https://openalex.org/W4244726870","https://openalex.org/W4247833239","https://openalex.org/W4298625430","https://openalex.org/W4403861555"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W2097492617","https://openalex.org/W2753240997","https://openalex.org/W1764168690","https://openalex.org/W2537959205","https://openalex.org/W2740895074","https://openalex.org/W2772446090","https://openalex.org/W4284893819"],"abstract_inverted_index":{"Behavioral":[0],"malware":[1,59],"detectors":[2,44,81],"that":[3,23,193],"analyze":[4],"power":[5,153],"traces":[6],"have":[7],"proven":[8],"to":[9,14,51,66,86,171,200,203,206],"be":[10,52],"a":[11,53,61,83,107,134,185,194],"promising":[12],"defense":[13],"secure":[15],"lowcomplexity":[16],"embedded":[17],"systems.":[18],"However,":[19],"recent":[20],"work":[21],"shows":[22],"this":[24,76,121,139],"approach":[25,122],"struggles":[26],"in":[27],"more":[28,91],"challenging":[29],"contexts":[30],"with":[31,82],"multicore":[32],"processors,":[33],"multithreaded":[34],"software,":[35],"and":[36,71,95],"inherently":[37],"stealthy":[38],"or":[39],"deliberately":[40],"evasive":[41],"attacks.":[42],"These":[43],"consider":[45],"the":[46,162],"execution":[47],"of":[48,63,125,176,187],"an":[49,68,142,173],"attack":[50,114,158,180,190,208],"single":[54],"detection":[55,88,93,99,124],"event,":[56],"whereas":[57],"realworld":[58],"requires":[60],"lifecycle":[62,119,191],"sequential":[64],"stages":[65,130],"prime":[67],"attack,":[69],"execute,":[70],"perform":[72],"post-exploit":[73],"actions.":[74],"In":[75],"work,":[77],"we":[78],"augment":[79],"traditional":[80,135],"lifecycle-aware":[84,102,167],"backend":[85],"collate":[87],"events,":[89],"generate":[90],"informed":[92],"decisions,":[94],"thus":[96],"significantly":[97],"improve":[98],"performance.":[100],"Our":[101],"detector":[103,168,197],"is":[104,169],"implemented":[105],"via":[106],"hidden":[108],"Markov":[109],"model":[110],"trained":[111],"on":[112,141,178,189],"general":[113],"lifecycles.":[115,181],"Leveraging":[116],"signals":[117],"across":[118],"stages,":[120],"enables":[123],"attacks":[126],"even":[127],"if":[128],"certain":[129],"are":[131],"missed":[132],"by":[133],"detector.":[136],"We":[137],"evaluate":[138],"framework":[140],"8-core":[143],"embedded-class":[144],"Intel":[145],"Xeon":[146],"platform":[147],"running":[148],"drone-based":[149],"workloads,":[150],"using":[151],"boardlevel":[152],"measurements.":[154],"When":[155],"tested":[156],"against":[157],"lifecycles":[159],"derived":[160],"from":[161],"MITRE":[163],"ATT&CK":[164],"matrix,":[165],"our":[166],"able":[170],"achieve":[172],"ROC-AUC":[174],"score":[175,186],"0.98":[177],"baseline":[179,195],"Furthermore,":[182],"it":[183],"achieves":[184],"0.70":[188],"specifications":[192],"densitybased":[196],"completely":[198],"fails":[199],"detect,":[201],"due":[202],"it's":[204],"vulnerability":[205],"simple":[207],"stalling":[209],"strategies.":[210]},"counts_by_year":[{"year":2026,"cited_by_count":1}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
