notesum.ai
Published at December 4PBP: Post-training Backdoor Purification for Malware Classifiers
cs.LG
cs.AI
cs.CR
Released Date: December 4, 2024
Authors: Dung Thuy Nguyen, Ngoc N. Tran, Taylor T. Johnson, Kevin Leach

| Dataset | Poisoning Rate | Pre-trained | FT | FT-init | FE-tuning | LP | FST | Ours | |||||||
| C-Acc | ASR | C-Acc | ASR | C-Acc | ASR | C-Acc | ASR | C-Acc | ASR | C-Acc | ASR | C-Acc | ASR | ||
| EMBER | 0.005 | 99.01 | 99.23 | 99.10 | 99.50 | 99.07 | 99.27 | 99.11 | 99.50 | 99.11 | 99.52 | 99.07 | 99.61 | 96.57 | 17.83 |
| 0.01 | 98.94 | 98.79 | 99.06 | 99.54 | 99.04 | 99.41 | 99.03 | 99.16 | 99.08 | 99.39 | 99.04 | 99.59 | 96.52 | 15.44 | |
| 0.02 | 98.98 | 99.43 | 99.08 | 99.69 | 99.01 | 99.52 | 99.06 | 99.63 | 99.10 | 99.61 | 99.04 | 99.66 | 96.57 | 17.83 | |
| 0.05 | 98.99 | 99.43 | 99.08 | 99.87 | 99.06 | 99.91 | 99.07 | 99.82 | 99.03 | 99.83 | 99.90 | 99.76 | 96.41 | 17.58 | |
| AndroZoo | 0.005 | 98.53 | 82.91 | 98.63 | 81.53 | 98.62 | 82.36 | 98.55 | 70.38 | 98.57 | 98.69 | 98.66 | 81.12 | 96.76 | 3.83 |
| 0.01 | 98.56 | 99.90 | 98.67 | 100.0 | 98.67 | 98.62 | 98.60 | 97.07 | 98.58 | 99.90 | 98.68 | 98.76 | 96.88 | 13.26 | |
| 0.02 | 98.58 | 99.45 | 98.45 | 100 | 98.53 | 56.23 | 98.55 | 0.03 | 98.57 | 98.86 | 98.55 | 0.01 | 96.64 | 4.73 | |
| 0.05 | 98.59 | 99.72 | 98.58 | 100.0 | 98.62 | 99.90 | 98.57 | 56.09 | 98.53 | 100.0 | 98.63 | 1.90 | 96.86 | 0.89 | |