Hybrid CNN and Autoencoder Deep Learning Model for Network Malware Detection

Mayra Anggraini, Rama Aria Megantara

Abstract


Malware remains one of the primary threats to network security, continuously evolving with increasingly complex attack patterns that are difficult to detect using conventional methods. Data imbalance and high feature dimensionality are major challenges in improving the performance of malware detection models. This study aims to develop a deep learning-based malware detection model using a hybrid approach that combines Convolutional Neural Networks (CNN) and Autoencoders. The dataset used in this study was the improved version of the CICIDS2017 dataset, consisting of more than 2 million records and 91 features. The research stages included data collection, exploratory data analysis (EDA), data preprocessing, feature selection, and data balancing using SMOTE, followed by model design and evaluation. The Autoencoder was employed for dimensionality reduction, generating a compressed representation of 32 features, which was subsequently used as input for the CNN model in multi-class classification. The results demonstrate that the proposed model achieved high accuracy, along with strong precision, recall, and F1-score values across most classes. However, performance on minority classes still exhibited limitations due to data imbalance. Therefore, the hybrid CNN–Autoencoder approach proved effective in improving network malware detection performance.

Keywords


autoencoder; CNN; deep learning; malware detection,;SMOTE

Full Text:

PDF

References


S. A. Hashmi, “Malware Detection and Classification on Different Dataset by Hybridization of CNN and Machine Learning,” International Journal of Intelligent Systems and Applications in Engineering, Vol. 12, No. 6s, pp. 650–667, 2024, DOI: 10.18201/ijisae.2024.006s.4004.

Sharipuddin, R. S. Putra, M. F. Aulia, S. A. Maulana, and P. A. Jusia, “Android Malware Detection using Convolutional Neural Network,” Media Journal of General Computer Science, Vol. 1, No. 1, pp. 7–13, 2024, DOI: 10.62205/mjgcs.v1i1.7.

R. Almuhanna and S. Dardouri, “A Deep Learning/Machine Learning Approach for Anomaly based Network Intrusion Detection,” Frontiers in Artificial Intelligence, Vol. 8, 2025, DOI: 10.3389/frai.2025.1625891.

L. Mohammadpour, T. C. Ling, C. S. Liew, and A. Aryanfar, “A Survey of CNN-based Network Intrusion Detection,” Applied Sciences, Vol. 12, No. 16, p. 8162, 2022, DOI: 10.3390/app12168162.

B. H. Egga, A. S. Audu, G. O. I. Aimufua, M. Olalere, B. A. Ajayi, and I. T. Solomon, “Autoencoder-based Model for Detecting IoT Network Traffic Anomalies,” Science World Journal, Vol. 20, No. 4, 2025, DOI: 10.4314/swj.v20i4.8.

K. Janani and R. Gunasundari, “Detection of Malware in Large Networks using Deep Auto Encoders,” International Journal on Recent and Innovation Trends in Computing and Communication, Vol. 11, No. 6s, 2023, DOI: 10.17762/ijritcc.v11i6s.6894.

R. Jablaoui, O. Cheikhrouhou, M. Hamdi, and N. Liouane, “Deep Learning Enabled Intrusion Detection System for IoT Security,” EURASIP Journal on Wireless Communications and Networking, Vol. 2025, No. 66, 2025, DOI: 10.1186/s13638-025-02477-6.

E. C. P. Neto, S. Iqbal, S. Buffett, M. Sultana, and A. Taylor, “Deep Learning for Intrusion Detection in Emerging Technologies: A Comprehensive Survey and New Perspectives,” Artificial Intelligence Review, Vol. 58, No. 340, 2025, DOI: 10.1007/s10462-025-11346-z.

A. H. A. Alsaroah, “Anomaly based Network Intrusion Detection using Autoencoders,” Journal of Al-Qadisiyah for Computer Science and Mathematics, Vol. 18, No. 1, pp. 24–36, 2026, DOI: 10.29304/jqcsm.2026.18.12540.

Z. Zhao, H. Guo, and Y. Wang, “A Multi-Information Fusion Anomaly Detection Model based on Convolutional Neural Networks and AutoEncoder,” Scientific Reports, Vol. 14, 2024, DOI: 10.1038/s41598-024-66760-0.

M. A. Hossain and M. S. Islam, “Enhanced Detection of Obfuscated Malware in Memory Dumps: A Machine Learning Approach for Advanced Cybersecurity,” Cybersecurity, Vol. 7, No. 16, 2024, DOI: 10.1186/s42400-024-00205-z.

S. B. Selvakumar, M. Sivaanandh, K. Muneeswaran, and B. Lakshmanan, “Ensemble of Feature Augmented Convolutional Neural Network and Deep Autoencoder for Efficient Detection of Network Attacks,” Scientific Reports, Vol. 15, No. 1, 2025, DOI: 10.1038/s41598-025-88243-6.

N. Cassavia, L. Caviglione, M. Guarascio, A. Liguori, and M. Zuppelli, “Learning Autoencoder Ensembles for Detecting Malware Hidden Communications in IoT Ecosystems,” Journal of Intelligent Information Systems, Vol. 62, pp. 925–949, 2024, DOI: 10.1007/s10844-023-00819-8.

M. M. Aslam, A. Tufail, L. C. De Silva, R. A. A. H. M. Apong, and A. Namoun, “An Improved Autoencoder-based Approach for Anomaly Detection in Industrial Control Systems,” Systems Science & Control Engineering, Vol. 12, No. 1, 2024, DOI: 10.1080/21642583.2024.2334303.

A. Souri, R. Hosseini, and M. Rahmani, “A State-of-the-Art Survey of Malware Detection Approaches using Data Mining Techniques,” Human-Centric Computing and Information Sciences, Vol. 10, No. 30, 2020, DOI: 10.1186/s13673-020-00228-0.

A. Anand, S. Rani, D. Anand, H. M. Aljahdali, and D. Kerr, “An Efficient CNN-based Deep Learning Model to Detect Malware Attacks (CNN-DMA) in 5G-IoT Healthcare Applications,” Sensors, Vol. 21, No. 19, p. 6346, 2021, DOI: 10.3390/s21196346.




DOI: https://doi.org/10.32520/stmsi.v15i5.6382

Article Metrics

Abstract view : 34 times
PDF - 5 times

Refbacks

  • There are currently no refbacks.


Creative Commons License
This work is licensed under a Creative Commons Attribution-ShareAlike 4.0 International License.