Skip to main navigation Skip to search Skip to main content

PAC-X: Fuzzy Explainable AI for Multiclass Malware Detection

  • Mohd Saqib
  • , Benjamin C.M. Fung*
  • , Philippe Charland
  • *Corresponding author for this work

Research output: Contribution to journalArticlepeer-review

Abstract

Researchers often approach malware detection as a binary classification problem. However, evidence indicates that malware can belong to multiple families simultaneously, and malicious files frequently exhibit numerous benign features. Attackers exploit this by embedding malicious intent within benign features, making malware detection a problem better suited for fuzzy systems. Furthermore, providing explainability for such fuzzy classification remains a significant challenge, requiring specialized Explainable AI (XAI) frameworks. Existing XAI approaches offer insights into model decisions but are vulnerable to adversarial attacks that manipulate features to mislead models. To address these issues, we propose PAC-X, a novel XAI framework for malware detection. PAC-X integrates the Conditional Attention Neural Network (CAN-Net) to deliver comprehensive multifuzzy-class explainability and employs Contextual Fuzzy Clustering (CFC) to extract contextual insights from training data. This framework is resilient to adversarial manipulations, maintaining reliable and interpretable explanations even under adversarial conditions designed to mislead the model. Through extensive evaluations on diverse malware datasets, PAC-X demonstrates superior explainability and robustness compared to state-of-the-art XAI methods. It provides a critical advancement in cybersecurity by addressing the complexities of evasive malware detection and enabling a deeper interpretation of multiclass malware characteristics.

Original languageEnglish
Pages (from-to)53-64
Number of pages12
JournalIEEE Transactions on Fuzzy Systems
Volume34
Issue number1
DOIs
StatePublished - 2026
Externally publishedYes

Bibliographical note

Publisher Copyright:
© 1993-2012 IEEE.

Keywords

  • Adversarial attack
  • explainable AI (XAI)
  • fuzzy clustering
  • fuzzy system
  • malware analysis

ASJC Scopus subject areas

  • Control and Systems Engineering
  • Computational Theory and Mathematics
  • Artificial Intelligence
  • Applied Mathematics

Fingerprint

Dive into the research topics of 'PAC-X: Fuzzy Explainable AI for Multiclass Malware Detection'. Together they form a unique fingerprint.

Cite this