{"id":"https://openalex.org/W4396718760","doi":"https://doi.org/10.48550/arxiv.2405.03009","title":"Explainable Malware Detection with Tailored Logic Explained Networks","display_name":"Explainable Malware Detection with Tailored Logic Explained Networks","publication_year":2024,"publication_date":"2024-05-05","ids":{"openalex":"https://openalex.org/W4396718760","doi":"https://doi.org/10.48550/arxiv.2405.03009"},"language":"en","primary_location":{"is_oa":true,"landing_page_url":"https://arxiv.org/abs/2405.03009","pdf_url":"https://arxiv.org/pdf/2405.03009","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":["Cornell University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false},"type":"preprint","type_crossref":"posted-content","indexed_in":["arxiv"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2405.03009","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5046027921","display_name":"Peter Anthony","orcid":"https://orcid.org/0000-0002-9010-3075"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Anthony, Peter","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5058772124","display_name":"Francesco Giannini","orcid":"https://orcid.org/0000-0001-8492-8110"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Giannini, Francesco","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5097138116","display_name":"Michelangelo Diligenti","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Diligenti, Michelangelo","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5058838804","display_name":"Martin Homola","orcid":"https://orcid.org/0000-0001-6384-9771"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Homola, Martin","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5022658803","display_name":"Marco Gori","orcid":"https://orcid.org/0000-0001-6337-5430"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Gori, Marco","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5078877757","display_name":"\u0160tefan Balogh","orcid":"https://orcid.org/0000-0003-0634-9476"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Balogh, Stefan","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5034895765","display_name":"J\u00e1n Moj\u017ei\u0161","orcid":"https://orcid.org/0000-0002-2196-2271"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Mojzis, Jan","raw_affiliation_strings":[],"affiliations":[]}],"institution_assertions":[],"countries_distinct_count":0,"institutions_distinct_count":0,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.0,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":0,"max":84},"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9989,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9989,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9925,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9788,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[],"concepts":[{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.75742006},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5908622},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.43125808}],"mesh":[],"locations_count":1,"locations":[{"is_oa":true,"landing_page_url":"https://arxiv.org/abs/2405.03009","pdf_url":"https://arxiv.org/pdf/2405.03009","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":["Cornell University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false}],"best_oa_location":{"is_oa":true,"landing_page_url":"https://arxiv.org/abs/2405.03009","pdf_url":"https://arxiv.org/pdf/2405.03009","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":["Cornell University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false},"sustainable_development_goals":[],"grants":[],"datasets":[],"versions":[],"referenced_works_count":0,"referenced_works":[],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W4284893819","https://openalex.org/W2772446090","https://openalex.org/W2753240997","https://openalex.org/W2748952813","https://openalex.org/W2740895074","https://openalex.org/W2537959205","https://openalex.org/W2249809453","https://openalex.org/W2097492617","https://openalex.org/W1764168690"],"abstract_inverted_index":{"Malware":[0],"detection":[1],"is":[2,69,184],"a":[3,34,46,116,178],"constant":[4],"challenge":[5],"in":[6,62,95,101,126],"cybersecurity":[7],"due":[8],"to":[9,21,42,141,186,195],"the":[10,25,51,107,127,137,142,150,155,196],"rapid":[11],"development":[12],"of":[13,28,40,48,109,120,129,139,145,181],"new":[14],"attack":[15],"techniques.":[16],"Traditional":[17],"signature-based":[18],"approaches":[19],"struggle":[20],"keep":[22],"pace":[23],"with":[24,190,193],"sheer":[26],"volume":[27],"malware":[29,82,146],"samples.":[30],"Machine":[31],"learning":[32,78],"offers":[33],"promising":[35],"solution,":[36],"but":[37],"faces":[38],"issues":[39],"generalization":[41],"unseen":[43],"samples":[44],"and":[45,73,169],"lack":[47],"explanation":[49],"for":[50,71],"instances":[52],"identified":[53],"as":[54],"malware.":[55],"However,":[56],"human-understandable":[57],"explanations":[58,125,189],"are":[59,115,171],"especially":[60],"important":[61],"security-critical":[63],"fields,":[64],"where":[65],"understanding":[66],"model":[67],"decisions":[68],"crucial":[70],"trust":[72],"legal":[74],"compliance.":[75],"While":[76],"deep":[77],"models":[79,91],"excel":[80],"at":[81],"detection,":[83,147],"their":[84],"black-box":[85,173],"nature":[86],"hinders":[87],"explainability.":[88],"Conversely,":[89],"interpretable":[90,121,167],"often":[92],"fall":[93],"short":[94],"performance.":[96],"To":[97],"bridge":[98],"this":[99,102],"gap":[100],"application":[103,138],"domain,":[104],"we":[105,158,176],"propose":[106],"use":[108],"Logic":[110,131],"Explained":[111],"Networks":[112],"(LENs),":[113],"which":[114],"recently":[117],"proposed":[118],"class":[119],"neural":[122],"networks":[123],"providing":[124],"form":[128],"First-Order":[130],"(FOL)":[132],"rules.":[133],"This":[134],"paper":[135],"extends":[136],"LENs":[140,161,182],"complex":[143],"domain":[144],"specifically":[148],"using":[149],"large-scale":[151],"EMBER":[152],"dataset.":[153],"In":[154],"experimental":[156],"results":[157],"show":[159],"that":[160,164,170,183],"achieve":[162],"robustness":[163],"exceeds":[165],"traditional":[166],"methods":[168],"rivaling":[172],"models.":[174],"Moreover,":[175],"introduce":[177],"tailored":[179],"version":[180],"shown":[185],"generate":[187],"logic":[188],"higher":[191],"fidelity":[192],"respect":[194],"model's":[197],"predictions.":[198]},"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W4396718760","counts_by_year":[],"updated_date":"2024-12-15T12:19:00.313651","created_date":"2024-05-09"}