CBAM-CGRU-SVM based malware detection method for Android

Min SUN(), Qian CHENG, Xining DING   

  1. College of Computer and Information Technology,Shanxi University,Taiyuan Shanxi 030006,China
  • Received:2023-06-04 Revised:2023-09-18 Accepted:2023-09-28 Online:2024-05-10 Published:2024-05-10
  • About author:CHENG Qian, born in 1998, M. S. candidate. Her research interests include information security, deep learning.
    DING Xining, born in 1998, M. S. candidate. Her research interests include information security, privacy protection.
    Basic Research Program of Shanxi Province(20210302123455)


孙敏(), 成倩, 丁希宁   

  1. 山西大学 计算机与信息技术学院,太原 030006
  • 通讯作者: 孙敏
  • 作者简介:成倩(1998—),女,山西太原人,硕士研究生,主要研究方向:信息安全、深度学习
  • 基金资助:


With the increasing variety and quantity of Android malware, it becomes increasingly important to detect malware to protect system security and user privacy. To address the problem of low classification accuracy of traditional malware detection models, A malware detection model for Android named CBAM-CGRU-SVM was proposed based on Convolutional Neural Network (CNN), Gated Recurrent Unit (GRU), and Support Vector Machine (SVM). In this model, more key features of malware were learned by adding a Convolutional Block Attention Module (CBAM) to the convolutional neural network, and GRUs were employed to further extract features. In order to solve the problem of insufficient generalization ability of the model when performing image classification, SVM was used instead of softmax activation function as the classification function of the model. Experiments were conducted on Malimg public dataset, in which the malware data was transformed to images as model input. Experimental results show that the classification accuracy of CBAM-CGRU-SVM model reaches 94.73%, which can effectively classify malware families.

Key words: malware, Convolutional Neural Network (CNN), Convolutional Block Attention Module (CBAM), Gated Recurrent Unit (GRU), Support Vector Machine (SVM)



关键词: 恶意软件, 卷积神经网络, 卷积块注意力模块, 门控循环单元, 支持向量机

