PdfRep

Citation Author(s):
Ran
Liu
UMBC
Charles
Nicholas
UMBC
Submitted by:
Charles Nicholas
Last updated:
Mon, 03/04/2024 - 11:54
DOI:
10.21227/7hnq-dc32
Data Format:
Research Article Link:
License:
0
0 ratings - Please login to submit your rating.

Abstract 

With the widespread use of the Portable Document Format (PDF), it’s increasingly becoming a target for malware, highlighting the need for effective detection solutions. In recent years, machine learning-based methods for PDF malware detection have grown in popularity. However, the effectiveness of ML models is closely related to the quality of the training datasets. In this research, we investigated two widely used PDF malware datasets: Contagio and CIC. We found biases and representativeness issues that could affect the reliability and applicability of models built on them. Our statistical analysis revealed marked difference between these datasets and PDF malware samples from VirusTotal, as well as benign PDFs from Govdocs, pointing to the necessity for more representative datasets in PDF malware research.. To address this gap, we introduce a novel dataset: PdfRep. Our findings demonstrate that PdfRep outperforms both CIC and Contagio across various evaluation metrics. The main contribution of this paper is the introduction of PdfRep, a new PDF malware dataset that overcomes the limitations of representativeness in existing datasets. This enhancement substantially increases the accuracy of PDF malware detection models and holds promise for advancing the field of PDF malware detection research.

Instructions: 

We have made this dataset available over GitHub.  The data and instructions are available here

Comments

I need this dataset

Submitted by Abhinand A K on Wed, 02/14/2024 - 01:08
Submitted by Charles Nicholas on Mon, 03/04/2024 - 11:55

thank you.

Submitted by Rahmoune Bitit on Wed, 02/21/2024 - 16:13

Dataset Files

    Files have not been uploaded for this dataset