{"id":"W3125378275","doi":"10.1145/3324884.3418926","title":"On benign features in malware detection","year":2020,"lang":"en","type":"article","venue":"","topic":"Advanced Malware Detection Techniques","field":"Computer Science","cited_by":6,"is_retracted":false,"has_abstract":true,"ca_institutions":"University of British Columbia","funders":"","keywords":"Malware; Computer science; Android malware; Classifier (UML); Detector; Artificial intelligence; Android (operating system); Machine learning; Data mining; Pattern recognition (psychology); Computer security; Operating system","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.003527223,0.001932646,0.001729354,0.00568616,0.002048619,0.002780477,0.001400744,0.00344873,0.001086872],"category_scores_gemma":[0.02684226,0.0008269973,0.0009863249,0.002384237,0.004201202,0.006657112,0.002525883,0.003137333,0.001199336],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0009936946,"about_ca_system_score_gemma":0.0008808119,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.002774565,"about_ca_topic_score_gemma":0.002176867,"domain_scores_codex":[0.9931667,0.001525497,0.0003809866,0.001190272,0.003269689,0.000466821],"domain_scores_gemma":[0.9714485,0.01973327,0.002211207,0.00263967,0.003423902,0.0005434059],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"design_other","study_design_gemma":"bench_or_experimental","study_design_scores_codex":[0.0007961622,0.0005692848,0.03656707,0.0007029867,0.0002484255,0.001797549,0.0009703331,0.1053692,0.04187342,0.08477136,0.01158681,0.7147474],"study_design_scores_gemma":[0.00004164282,0.000538512,0.007288381,0.0002000896,0.0001547224,0.003169391,0.0002549913,0.811074,0.02871108,0.1343746,0.01403909,0.0001533828],"study_design_candidate":"bench_or_experimental","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.1630677,0.01225116,0.803768,0.006747941,0.0006407505,0.0002737363,0.0002488137,0.001475434,0.01152656],"genre_scores_gemma":[0.8405821,0.003580659,0.148001,0.001326421,0.001464775,0.000119551,0.000326493,0.0002340755,0.00436498],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.00568616,"threshold_uncertainty_score":0.01865399,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.0100288186304092,"score_gpt":0.2377593318081216,"score_spread":0.2277305131777124,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}