Andro-AutoPsy: Anti-malware system based on similarity matching of malware and malware creator-centric information
DC Field | Value | Language |
---|---|---|
dc.contributor.author | Jang, Jae-Wook | - |
dc.contributor.author | Kang, Hyunjae | - |
dc.contributor.author | Woo, Jiyoung | - |
dc.contributor.author | Mohaisen, Aziz | - |
dc.contributor.author | Kim, Huy Kang | - |
dc.date.accessioned | 2021-09-04T13:13:27Z | - |
dc.date.available | 2021-09-04T13:13:27Z | - |
dc.date.created | 2021-06-18 | - |
dc.date.issued | 2015-09 | - |
dc.identifier.issn | 1742-2876 | - |
dc.identifier.uri | https://scholar.korea.ac.kr/handle/2021.sw.korea/92669 | - |
dc.description.abstract | Mobile security threats have recently emerged because of the fast growth in mobile technologies and the essential role that mobile devices play in our daily lives. For that, and to particularly address threats associated with malware, various techniques are developed in the literature, including ones that utilize static, dynamic, on-device, off-device, and hybrid approaches for identifying, classifying, and defend against mobile threats. Those techniques fail at times, and succeed at other times, while creating a trade-off of performance and operation. In this paper, we contribute to the mobile security defense posture by introducing Andro-AutoPsy, an anti-malware system based on similarity matching of malware-centric and malware creator-centric information. Using Andro-AutoPsy, we detect and classify malware samples into similar subgroups by exploiting the profiles extracted from integrated footprints, which are implicitly equivalent to distinct characteristics. The experimental results demonstrate that Andro-AutoPsy is scalable, performs precisely in detecting and classifying malware with low false positives and false negatives, and is capable of identifying zero-day mobile malware. (C) 2015 Elsevier Ltd. All rights reserved. | - |
dc.language | English | - |
dc.language.iso | en | - |
dc.publisher | ELSEVIER SCI LTD | - |
dc.title | Andro-AutoPsy: Anti-malware system based on similarity matching of malware and malware creator-centric information | - |
dc.type | Article | - |
dc.contributor.affiliatedAuthor | Kim, Huy Kang | - |
dc.identifier.doi | 10.1016/j.diin.2015.06.002 | - |
dc.identifier.scopusid | 2-s2.0-84944049128 | - |
dc.identifier.wosid | 000363999700003 | - |
dc.identifier.bibliographicCitation | DIGITAL INVESTIGATION, v.14, pp.17 - 35 | - |
dc.relation.isPartOf | DIGITAL INVESTIGATION | - |
dc.citation.title | DIGITAL INVESTIGATION | - |
dc.citation.volume | 14 | - |
dc.citation.startPage | 17 | - |
dc.citation.endPage | 35 | - |
dc.type.rims | ART | - |
dc.type.docType | Article | - |
dc.description.journalClass | 1 | - |
dc.description.journalRegisteredClass | scie | - |
dc.description.journalRegisteredClass | scopus | - |
dc.relation.journalResearchArea | Computer Science | - |
dc.relation.journalWebOfScienceCategory | Computer Science, Information Systems | - |
dc.relation.journalWebOfScienceCategory | Computer Science, Interdisciplinary Applications | - |
dc.subject.keywordAuthor | Similarity matching | - |
dc.subject.keywordAuthor | Profiling | - |
dc.subject.keywordAuthor | Android malware | - |
dc.subject.keywordAuthor | Malware classification | - |
dc.subject.keywordAuthor | Certificate | - |
Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.
145 Anam-ro, Seongbuk-gu, Seoul, 02841, Korea+82-2-3290-2963
COPYRIGHT © 2021 Korea University. All Rights Reserved.
Certain data included herein are derived from the © Web of Science of Clarivate Analytics. All rights reserved.
You may not copy or re-distribute this material in whole or in part without the prior written consent of Clarivate Analytics.