Manilyzer: Automated Android Malware Detection through Manifest Analysis

被引:19
|
作者
Feldman, Stephen [1 ]
Stadther, Dillon [2 ]
Wang, Bing [3 ]
机构
[1] Univ Virginia, 1980 Arlington Blvd Apt 1, Charlottesville, VA 22903 USA
[2] Gardner Webb Univ, Boiling Springs, NC 28017 USA
[3] Univ Connecticut, Storrs, CT 06269 USA
关键词
Android security; data mining; malware detection; Manilyzer;
D O I
10.1109/MASS.2014.65
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
As the world's most popular mobile operating system, Google's Android OS is the principal target of an ever increasing mobile malware threat. To counter this emerging menace, many malware detection techniques have been proposed. A key aspect of many static detection techniques is their reliance on the permissions requested in the AndroidManifest.xml file. Although these permissions are very important, the manifest also contains additional information that can be valuable in identifying malware, which, however, has not been fully utilized by existing studies. In this paper we present Manilyzer, a system that exploits the rich information in the manifest files, produces feature vectors automatically, and uses state-of-the-art machine learning algorithms to classify applications as malicious or benign. We apply Manilyzer to 617 applications (307 malicious, 310 benign) and find that it is very effective: the accuracy is up to 90%, while the false positives and false negatives are both around 10%. In addition to classifying applications, Manilyzer is used to study the trends of permission requests in malicious applications. Through this evaluation and further analysis, it is clear that malware has evolved over time, and not all malware can be detected through static analysis of manifest files. To address this issue, we briefly explore a dynamic analysis technique that monitors network traffic using a packet sniffer.
引用
收藏
页码:767 / 772
页数:6
相关论文
共 50 条
  • [31] Android malware detection based on power consumption analysis
    Yang H.-Y.
    Tang R.-W.
    1600, Univ. of Electronic Science and Technology of China (45): : 981 - 985
  • [32] Detection approaches for android malware: Taxonomy and review analysis
    Manzil, Hashida Haidros Rahima
    Naik, S. Manohar
    EXPERT SYSTEMS WITH APPLICATIONS, 2024, 238
  • [33] Static Analysis of Executables for Collaborative Malware Detection on Android
    Schmidt, Aubrey-Derrick
    Bye, Rainer
    Schmidt, Hans-Gunther
    Clausen, Jan
    Kiraz, Osman
    Yueksel, Kamer A.
    Camtepe, Seyit A.
    Albayrak, Sahin
    2009 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, VOLS 1-8, 2009, : 631 - +
  • [34] Formal Methods for Android Banking Malware Analysis and Detection
    Iadarola, Giacomo
    Martinelli, Fabio
    Mercaldo, Francesco
    Santone, Antonella
    2019 SIXTH INTERNATIONAL CONFERENCE ON INTERNET OF THINGS: SYSTEMS, MANAGEMENT AND SECURITY (IOTSMS), 2019, : 331 - 336
  • [35] Deep Android Malware Detection
    McLaughlin, Niall
    del Rincon, Jesus Martinez
    Kang, BooJoong
    Yerima, Suleiman
    Miller, Paul
    Sezer, Sakir
    Safaei, Yeganeh
    Trickel, Erik
    Zhao, Ziming
    Doup, Adam
    Ahn, Gail Joon
    PROCEEDINGS OF THE SEVENTH ACM CONFERENCE ON DATA AND APPLICATION SECURITY AND PRIVACY (CODASPY'17), 2017, : 301 - 308
  • [36] Detection of Repackaged Android Malware
    Shahriar, Hossain
    Clincy, Victor
    2014 9TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2014, : 349 - 354
  • [37] Smart malware detection on Android
    Gheorghe, Laura
    Marin, Bogdan
    Gibson, Gary
    Mogosanu, Lucian
    Deaconescu, Razvan
    Voiculescu, Valentin-Gabriel
    Carabas, Mihai
    SECURITY AND COMMUNICATION NETWORKS, 2015, 8 (18) : 4254 - 4272
  • [38] TRENDS IN ANDROID MALWARE DETECTION
    Shaerpour, Kaveh
    Dehghantanha, Ali
    Mahmod, Ramlan
    JOURNAL OF DIGITAL FORENSICS SECURITY AND LAW, 2013, 8 (03) : 21 - 40
  • [39] Android malware detection model
    Yang H.
    Na Y.
    Xi'an Dianzi Keji Daxue Xuebao/Journal of Xidian University, 2019, 46 (03): : 45 - 51
  • [40] Android Fragmentation in Malware Detection
    Long Nguyen-Vu
    Ahn, Jinung
    Jung, Souhwan
    COMPUTERS & SECURITY, 2019, 87