A Fuzzy Clustering-based Approach to study Malware Phylogeny

被引:0
|
作者
Acampora, Giovanni [1 ]
Bernardi, Mario Luca [2 ]
Cimitile, Marta [3 ]
Tortora, Genoveffa [4 ]
Vitiello, Autilia [4 ]
机构
[1] Univ Napoli Federico II, Naples, Italy
[2] Giustino Fortunato Univ, Benevento, Italy
[3] Unitelma Sapienza Univ, Rome, Italy
[4] Univ Salerno, Fisciano, Italy
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Mobile devices are always more diffused in the last years, allowing the users to perform several tasks: communication, web surfing, requiring web services. Given the high amount of sensitive data and operations related to these tasks, securing the mobile devices is becoming a very critical issue. As matter of the fact, malware attacks are on the rise and new mobile malware are continually generated with the aim of stealing private data and performing illegal activities. Since this new malware is mainly obtained by reusing existing malicious code, malware detection is supported by the study and the tracking of the mobile malware phylogeny. This paper proposes a malware phylogeny model obtained by a declarative Process Mining (PM) approach from the analysis of some running malware applications. The main idea is that the set of relations and recurring execution patterns among the syscalls of a running malware application can be modeled to obtain a malware fingerprint. The malware fingerprints are compared and classified by using a fuzzy clustering algorithm to recover the malware phylogeny map of all the considered malware families. The evaluation of the proposed approach is performed on a dataset of more than 4,000 infected applications across 39 malware families obtaining very encouraging results.
引用
收藏
页数:8
相关论文
共 50 条
  • [1] Fuzzy Clustering-Based Approach for Outlier Detection
    Al-Zoubi, Moh'd Belal
    Ali, Al-Dahoud
    Yahya, Abdelfatah A.
    [J]. RECENT ADVANCES AND APPLICATIONS OF COMPUTER ENGINEERING: PROCEEDINGS OF THE 9TH WSEAS INTERNATIONAL CONFERENCE (ACE 10), 2010, : 192 - +
  • [2] A clustering-based fuzzy classifier
    Drummond, Isabela
    Sandri, Sandra
    [J]. ARTIFICIAL INTELLIGENCE RESEARCH AND DEVELOPMENT, 2005, 131 : 247 - 254
  • [3] Fuzzy Clustering-Based Filter
    Coletta, Luiz F. S.
    Hruschka, Eduardo R.
    Covoes, Thiago F.
    Campello, Ricardo J. G. B.
    [J]. INFORMATION PROCESSING AND MANAGEMENT OF UNCERTAINTY IN KNOWLEDGE-BASED SYSTEMS: THEORY AND METHODS, PT 1, 2010, 80 : 406 - 415
  • [4] Fuzzy Clustering-Based Ensemble Approach to Predicting Indian Monsoon
    Saha, Moumita
    Mitra, Pabitra
    Chakraborty, Arun
    [J]. ADVANCES IN METEOROLOGY, 2015, 2015
  • [5] Fuzzy Collaborative Clustering-Based Ranking Approach for Complex Objects
    Liu, Shihu
    Chen, Xiaozhou
    Moughal, Tauqir Ahmed
    Yu, Fusheng
    [J]. MATHEMATICAL PROBLEMS IN ENGINEERING, 2015, 2015
  • [6] A fuzzy clustering-based binary threshold bispectrum estimation approach
    W. Y. Liu
    J. G. Han
    [J]. Neural Computing and Applications, 2012, 21 : 385 - 392
  • [7] A fuzzy clustering-based binary threshold bispectrum estimation approach
    Liu, W. Y.
    Han, J. G.
    [J]. NEURAL COMPUTING & APPLICATIONS, 2012, 21 : S385 - S392
  • [8] A clustering-based method for fuzzy modeling
    Wong, CC
    Chen, CC
    [J]. IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 1999, E82D (06) : 1058 - 1065
  • [9] Missing value imputation using a fuzzy clustering-based EM approach
    Rahman, Md. Geaur
    Islam, Md Zahidul
    [J]. KNOWLEDGE AND INFORMATION SYSTEMS, 2016, 46 (02) : 389 - 422
  • [10] Fuzzy clustering-based approach to derive hierarchical structures from folksonomies
    Zahia, Marouf
    Mohamed, Benslimane Sidi
    [J]. 2013 ACS INTERNATIONAL CONFERENCE ON COMPUTER SYSTEMS AND APPLICATIONS (AICCSA), 2013,