A Specification Based Intrusion Detection Framework for Mobile Phones

被引:0
|
作者
Chaugule, Ashwin [1 ]
Xu, Zhi [1 ]
Zhu, Sencun [1 ]
机构
[1] Penn State Univ, Dept Comp Sci & Engn, University Pk, PA 16802 USA
关键词
Mobile Phone; Intrusion Detection; Messaging Attack; Audio Attack;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the fast growth of mobile market, we are now seeing more and more malware on mobile phones. One common pattern of many commonly found malware on mobile phones is that: the malware always attempts to access sensitive system services on the mobile phone in an unobtrusive and stealthy fashion. For example, the malware may send messages automatically or stealthily interface with the audio peripherals on the device without the user's awareness and authorization. To detect the unauthorized malicious behavior, we present SBIDF, a Specification Based Intrusion Detection Framework, which utilizes the keypad or touchscreen interrupts to differentiate between malware and human activity. Specifically, in the proposed framework, we use an application independent specification, written in Temporal Logic of Causal Knowledge (TLCK), to describe the normal behavior pattern, and enforce this specification to all third party applications on the mobile phone during runtime by monitoring the inter-component communication pattern among critical components. Our evaluation of simulated behavior of real world malware shows that we are able to detect all forms of malware that attempts to access sensitive services without possessing user's permission. Furthermore, the SBIDF incurs a negligible overhead (20 mu secs) which makes it very feasible for real world deployment.
引用
收藏
页码:19 / 37
页数:19
相关论文
共 50 条
  • [1] Intrusion Detection in Bluetooth Enabled Mobile Phones
    Nair, Kishor Krishnan
    Helberg, Albert
    Van der Merwe, Johan
    [J]. 2015 INFORMATION SECURITY FOR SOUTH AFRICA - PROCEEDINGS OF THE ISSA 2015 CONFERENCE, 2015,
  • [2] Static Anomaly Detection Framework for Android-based Mobile Phones
    Ji, Xiaobo
    Zeng, Fan
    Ye, Bangxian
    [J]. INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2016, 10 (12): : 251 - 259
  • [3] A distributed intrusion detection framework based on autonomous and mobile agents
    Boughaci, Dalila
    Drias, Habiba
    Bendib, Ahmed
    Bouznit, Youcef
    Benhamou, Belaid
    [J]. DEPCOS-RELCOMEX 2006, 2006, : 248 - +
  • [4] Intrusion detection aware component-based systems: A specification-based framework
    Hussein, Mohammed
    Zulkernine, Mohammad
    [J]. JOURNAL OF SYSTEMS AND SOFTWARE, 2007, 80 (05) : 700 - 710
  • [5] A collaborative framework for intrusion detection in mobile networks
    Andreolini, Mauro
    Colajanni, Michele
    Marchetti, Mirco
    [J]. INFORMATION SCIENCES, 2015, 321 : 179 - 192
  • [6] An edge based hybrid intrusion detection framework for mobile edge computing
    Singh, Ashish
    Chatterjee, Kakali
    Satapathy, Suresh Chandra
    [J]. COMPLEX & INTELLIGENT SYSTEMS, 2022, 8 (05) : 3719 - 3746
  • [7] An edge based hybrid intrusion detection framework for mobile edge computing
    Ashish Singh
    Kakali Chatterjee
    Suresh Chandra Satapathy
    [J]. Complex & Intelligent Systems, 2022, 8 : 3719 - 3746
  • [8] Specification-based intrusion detection in WLANs
    Gill, Rupinder
    Smith, Jason
    Clark, Andrew
    [J]. 22ND ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, PROCEEDINGS, 2006, : 141 - +
  • [9] A Fault and Intrusion Tolerance Framework for Containerized Environments: A Specification-Based Error Detection Approach
    Madi, Taous
    Esteves-Verissimo, Paulo
    [J]. 2022 INTERNATIONAL WORKSHOP ON SECURE AND RELIABLE MICROSERVICES AND CONTAINERS (SRMC 2022), 2022, : 1 - 8
  • [10] Camera based step detection on mobile phones
    Aubeck, Ferenc
    Isert, Carsten
    Gusenbauer, Dominik
    [J]. 2011 INTERNATIONAL CONFERENCE ON INDOOR POSITIONING AND INDOOR NAVIGATION, 2011,