{"id":"https://openalex.org/W4281725204","doi":"https://doi.org/10.1145/3526241.3530326","title":"Deep Neural Network and Transfer Learning for Accurate Hardware-Based Zero-Day Malware Detection","display_name":"Deep Neural Network and Transfer Learning for Accurate Hardware-Based Zero-Day Malware Detection","publication_year":2022,"publication_date":"2022-06-02","ids":{"openalex":"https://openalex.org/W4281725204","doi":"https://doi.org/10.1145/3526241.3530326"},"language":"en","primary_location":{"id":"doi:10.1145/3526241.3530326","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3526241.3530326","pdf_url":null,"source":{"id":"https://openalex.org/S4363608736","display_name":"Proceedings of the Great Lakes Symposium on VLSI 2022","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Great Lakes Symposium on VLSI 2022","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5072969885","display_name":"Zhangying He","orcid":"https://orcid.org/0000-0002-5072-2955"},"institutions":[{"id":"https://openalex.org/I59897056","display_name":"California State University, Long Beach","ror":"https://ror.org/0080fxk18","country_code":"US","type":"education","lineage":["https://openalex.org/I59897056"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Zhangying He","raw_affiliation_strings":["California State University, Long Beach, Long Beach, CA, USA"],"affiliations":[{"raw_affiliation_string":"California State University, Long Beach, Long Beach, CA, USA","institution_ids":["https://openalex.org/I59897056"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5013526466","display_name":"Amin Rezaei","orcid":"https://orcid.org/0000-0002-7469-3642"},"institutions":[{"id":"https://openalex.org/I59897056","display_name":"California State University, Long Beach","ror":"https://ror.org/0080fxk18","country_code":"US","type":"education","lineage":["https://openalex.org/I59897056"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Amin Rezaei","raw_affiliation_strings":["California State University, Long Beach, Long Beach, CA, USA"],"affiliations":[{"raw_affiliation_string":"California State University, Long Beach, Long Beach, CA, USA","institution_ids":["https://openalex.org/I59897056"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5047382437","display_name":"Houman Homayoun","orcid":"https://orcid.org/0000-0001-8904-4699"},"institutions":[{"id":"https://openalex.org/I84218800","display_name":"University of California, Davis","ror":"https://ror.org/05rrcem69","country_code":"US","type":"education","lineage":["https://openalex.org/I84218800"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Houman Homayoun","raw_affiliation_strings":["University of California, Davis, Davis, CA, USA"],"affiliations":[{"raw_affiliation_string":"University of California, Davis, Davis, CA, USA","institution_ids":["https://openalex.org/I84218800"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5080844858","display_name":"Hossein Sayadi","orcid":"https://orcid.org/0000-0001-6423-0145"},"institutions":[{"id":"https://openalex.org/I59897056","display_name":"California State University, Long Beach","ror":"https://ror.org/0080fxk18","country_code":"US","type":"education","lineage":["https://openalex.org/I59897056"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Hossein Sayadi","raw_affiliation_strings":["California State University, Long Beach, Long Beach, CA, USA"],"affiliations":[{"raw_affiliation_string":"California State University, Long Beach, Long Beach, CA, USA","institution_ids":["https://openalex.org/I59897056"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5072969885"],"corresponding_institution_ids":["https://openalex.org/I59897056"],"apc_list":null,"apc_paid":null,"fwci":2.3252,"has_fulltext":false,"cited_by_count":20,"citation_normalized_percentile":{"value":0.91057935,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"27","last_page":"32"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9944000244140625,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12034","display_name":"Digital and Cyber Forensics","score":0.9883000254631042,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.9010151624679565},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8288614749908447},{"id":"https://openalex.org/keywords/overhead","display_name":"Overhead (engineering)","score":0.682646632194519},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.6320581436157227},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5669122338294983},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.5173467993736267},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.49921417236328125},{"id":"https://openalex.org/keywords/transfer-of-learning","display_name":"Transfer of learning","score":0.46577757596969604},{"id":"https://openalex.org/keywords/computer-hardware","display_name":"Computer hardware","score":0.45379722118377686},{"id":"https://openalex.org/keywords/convolutional-neural-network","display_name":"Convolutional neural network","score":0.4531082510948181},{"id":"https://openalex.org/keywords/false-positive-rate","display_name":"False positive rate","score":0.41453981399536133},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.38819053769111633},{"id":"https://openalex.org/keywords/computer-engineering","display_name":"Computer engineering","score":0.3450735807418823},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.32494330406188965},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.24563312530517578}],"concepts":[{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.9010151624679565},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8288614749908447},{"id":"https://openalex.org/C2779960059","wikidata":"https://www.wikidata.org/wiki/Q7113681","display_name":"Overhead (engineering)","level":2,"score":0.682646632194519},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.6320581436157227},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5669122338294983},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.5173467993736267},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.49921417236328125},{"id":"https://openalex.org/C150899416","wikidata":"https://www.wikidata.org/wiki/Q1820378","display_name":"Transfer of learning","level":2,"score":0.46577757596969604},{"id":"https://openalex.org/C9390403","wikidata":"https://www.wikidata.org/wiki/Q3966","display_name":"Computer hardware","level":1,"score":0.45379722118377686},{"id":"https://openalex.org/C81363708","wikidata":"https://www.wikidata.org/wiki/Q17084460","display_name":"Convolutional neural network","level":2,"score":0.4531082510948181},{"id":"https://openalex.org/C95922358","wikidata":"https://www.wikidata.org/wiki/Q5432725","display_name":"False positive rate","level":2,"score":0.41453981399536133},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.38819053769111633},{"id":"https://openalex.org/C113775141","wikidata":"https://www.wikidata.org/wiki/Q428691","display_name":"Computer engineering","level":1,"score":0.3450735807418823},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.32494330406188965},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.24563312530517578}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3526241.3530326","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3526241.3530326","pdf_url":null,"source":{"id":"https://openalex.org/S4363608736","display_name":"Proceedings of the Great Lakes Symposium on VLSI 2022","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Great Lakes Symposium on VLSI 2022","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":18,"referenced_works":["https://openalex.org/W1505180384","https://openalex.org/W1971139551","https://openalex.org/W2034053858","https://openalex.org/W2065890363","https://openalex.org/W2092939357","https://openalex.org/W2804935296","https://openalex.org/W2807415350","https://openalex.org/W2809457377","https://openalex.org/W2932551155","https://openalex.org/W2945027786","https://openalex.org/W2952311595","https://openalex.org/W2997591727","https://openalex.org/W3036243698","https://openalex.org/W3134241006","https://openalex.org/W3161833296","https://openalex.org/W3184036958","https://openalex.org/W4232751114","https://openalex.org/W6687483927"],"related_works":["https://openalex.org/W3192840557","https://openalex.org/W3091976719","https://openalex.org/W3018421652","https://openalex.org/W4220996320","https://openalex.org/W4312200629","https://openalex.org/W4313563103","https://openalex.org/W4285149559","https://openalex.org/W3021430260","https://openalex.org/W4382286161","https://openalex.org/W2968586400"],"abstract_inverted_index":{"In":[0,93],"recent":[1],"years,":[2],"security":[3],"researchers":[4],"have":[5],"shifted":[6],"their":[7],"attentions":[8],"to":[9,21,36],"the":[10,37,57,144,154],"underlying":[11],"processors'":[12,38],"architecture":[13],"and":[14,101,109,141,165],"proposed":[15,128],"Hardware-Based":[16],"Malware":[17],"Detection":[18],"(HMD)":[19],"countermeasures":[20],"address":[22],"inefficiencies":[23],"of":[24,59],"software-based":[25],"detection":[26,64,116,138],"methods.":[27],"HMD":[28],"techniques":[29],"apply":[30],"standard":[31,79],"Machine":[32],"Learning":[33],"(ML)":[34],"algorithms":[35],"low-level":[39],"events":[40,158],"collected":[41],"from":[42],"Hardware":[43],"Performance":[44],"Counter":[45],"(HPC)":[46],"registers.":[47],"However,":[48],"despite":[49],"obtaining":[50],"promising":[51],"results":[52,124],"for":[53,112,146],"detecting":[54,147],"known":[55],"malware,":[56],"challenge":[58],"accurate":[60,113],"zero-day":[61,87,114,148],"(unknown)":[62],"malware":[63,88,115,149],"has":[65],"remained":[66],"an":[67],"unresolved":[68],"problem":[69],"in":[70,85],"existing":[71,131],"HPC-based":[72],"countermeasures.":[73],"Our":[74],"comprehensive":[75],"analysis":[76],"shows":[77],"that":[78,126],"ML":[80],"classifiers":[81],"are":[82],"not":[83],"effective":[84],"recognizing":[86],"traces":[89],"using":[90,153],"HPC":[91],"events.":[92,121],"response,":[94],"we":[95],"propose":[96],"Deep-HMD,":[97],"a":[98,136,160],"two-stage":[99],"intelligent":[100],"flexible":[102],"approach":[103],"based":[104,117],"on":[105,118],"deep":[106],"neural":[107],"network":[108],"transfer":[110],"learning,":[111],"image-based":[119],"hardware":[120,157,167],"The":[122],"experimental":[123],"indicate":[125],"our":[127],"solution":[129],"outperforms":[130],"ML-based":[132],"methods":[133],"by":[134],"achieving":[135],"97%":[137],"rate":[139,164],"(F-Measure":[140],"Area":[142],"Under":[143],"Curve)":[145],"signatures":[150],"at":[151],"run-time":[152],"top":[155],"4":[156],"with":[159],"minimal":[161],"false":[162],"positive":[163],"no":[166],"redesign":[168],"overhead.":[169]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":10},{"year":2023,"cited_by_count":6}],"updated_date":"2026-03-09T08:58:05.943551","created_date":"2025-10-10T00:00:00"}
