FAGnet: Family-aware-based android malware analysis using graph neural network

被引:2
|
作者
Wang, Zhendong [1 ]
Zeng, Kaifa [1 ]
Wang, Junling [1 ]
Li, Dahai [1 ]
机构
[1] Jiangxi Univ Sci & Technol, Sch Informat Engn, Ganzhou 341000, Jiangxi, Peoples R China
关键词
Android malware analysis; Malware family; Graph neural network; Graph classification; Static code analysis;
D O I
10.1016/j.knosys.2024.111531
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Android malware family analysis is essential for building an efficient malware detection mechanism. In recent years, many graph representation learning -based malware detection and classification studies have been proposed, and many methods model malware as graph data to mine the behavioral semantics of malware. However, they do not consider the relationship at the sample (graph) level, and malware belonging to the same family has similar malicious behavior. The transformation of samples according to the Data Processing Inequality (DPI) will lead to the loss of mutual information transmission, which inspired us to consider the analysis of malware based on graph representation learning from this perspective. In this paper, we consider introducing the relationship between malware samples, inserting a family representation refinement component that is conducive to improving the family separability in the graph classification task, and propose a Family -Aware Graph neural network Android malware analysis (FAGnet). We use 4 backbones to perform extension experiments on 2 benchmark datasets and comprehensively compare some baseline methods. The experiments verify the effectiveness of FAGnet, which achieves 98.11 % accuracy on the Drebin dataset and 83.45 % and 72.76 % accuracy on the CICAndMal2017 category and family classification, respectively. In addition, FAGnet is evaluated with real -world data, and its satisfactory performance was maintained in real -world scenarios.
引用
收藏
页数:14
相关论文
共 50 条
  • [31] Forensic Analysis on Joker Family Android Malware
    Shi, Chen
    Cheng, Chris Chao-Chun
    Guan, Yong
    2021 17TH INTERNATIONAL CONFERENCE ON WIRELESS AND MOBILE COMPUTING, NETWORKING AND COMMUNICATIONS (WIMOB 2021), 2021, : 403 - 406
  • [32] DroidMalwareDetector: A novel Android malware detection framework based on convolutional neural network
    Kabakus, Abdullah Talha
    EXPERT SYSTEMS WITH APPLICATIONS, 2022, 206
  • [33] GRAMAC: A Graph Based Android Malware Classification Mechanism
    Vij, Devyani
    Balachandran, Vivek
    Thomas, Tony
    Surendran, Roopak
    PROCEEDINGS OF THE TENTH ACM CONFERENCE ON DATA AND APPLICATION SECURITY AND PRIVACY, CODASPY 2020, 2020, : 156 - 158
  • [34] A Hybrid Analysis-Based Approach to Android Malware Family Classification
    Ding, Chao
    Luktarhan, Nurbol
    Lu, Bei
    Zhang, Wenhui
    ENTROPY, 2021, 23 (08)
  • [35] Network Traffic Analysis for Android Malware Detection
    Gaviria de la Puerta, Jose
    Pastor-Lopez, Iker
    Sanz, Borja
    Bringas, Pablo G.
    HYBRID ARTIFICIAL INTELLIGENT SYSTEMS, HAIS 2019, 2019, 11734 : 468 - 479
  • [36] Malware Detection in Android by Network Traffic Analysis
    Zaman, Mehedee
    Siddiqui, Tazrian
    Amin, Mohammad Rakib
    Hossain, Md Shohrab
    2015 INTERNATIONAL CONFERENCE ON NETWORKING SYSTEMS AND SECURITY (NSYSS), 2015, : 183 - 187
  • [37] Guided Malware Sample Analysis Based on Graph Neural Networks
    Chen, Yi-Hsien
    Lin, Si-Chen
    Huang, Szu-Chun
    Lei, Chin-Laung
    Huang, Chun-Ying
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2023, 18 : 4128 - 4143
  • [38] Obfuscation-resilient Android Malware Detection Based on Graph Convolution Neural Networks.
    Wu Y.-M.
    Qi M.
    Zou D.-Q.
    Jin H.
    Ruan Jian Xue Bao/Journal of Software, 2023, 34 (06): : 2526 - 2542
  • [39] HGDetector: A hybrid Android malware detection method using network traffic and Function call graph
    Feng, Jiayin
    Shen, Limin
    Chen, Zhen
    Lei, Yu
    Li, Hui
    ALEXANDRIA ENGINEERING JOURNAL, 2025, 114 : 30 - 45
  • [40] SOMDROID: android malware detection by artificial neural network trained using unsupervised learning
    Mahindru, Arvind
    Sangal, A. L.
    EVOLUTIONARY INTELLIGENCE, 2022, 15 (01) : 407 - 437