Detecting and Classifying Android Malware Using Static Analysis along with Creator Information
- Authors
- Kang, Hyunjae; Jang, Jae-wook; Mohaisen, Aziz; Kim, Huy Kang
- Issue Date
- 2015
- Publisher
- SAGE PUBLICATIONS INC
- Citation
- INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS
- Indexed
- SCIE
SCOPUS
- Journal Title
- INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS
- URI
- https://scholar.korea.ac.kr/handle/2021.sw.korea/133207
- DOI
- 10.1155/2015/479174
- ISSN
- 1550-1329
- Abstract
- Thousands of malicious applications targeting mobile devices, including the popular Android platform, are created every day. A large number of those applications are created by a small number of professional underground actors; however previous studies overlooked such information as a feature in detecting and classifying malware and in attributing malware to creators. Guided by this insight, we propose a method to improve the performance of Android malware detection by incorporating the creator's information as a feature and classify malicious applications into similar groups. We developed a system that implements this method in practice. Our system enables fast detection of malware by using creator information such as serial number of certificate. Additionally, it analyzes malicious behaviors and permissions to increase detection accuracy. The system also can classify malware based on similarity scoring. Finally, we showed detection and classification performance with 98% and 90% accuracy, respectively.
- Files in This Item
- There are no files associated with this item.
- Appears in
Collections - School of Cyber Security > Department of Information Security > 1. Journal Articles
Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.