Android Malware Network Behavior Analysis at HTTP Protocol Packet Level

被引:1
|
作者
Wang, Shanshan [1 ]
Hou, Shifeng [2 ]
Zhang, Lei [1 ]
Chen, Zhenxiang [1 ]
Han, Hongbo [1 ]
机构
[1] Univ Jinan, Sch Informat Sci & Engn, Jinan 250022, Peoples R China
[2] Lib Rizhao Polytech, Rizhao 276826, Peoples R China
关键词
Android; Malware; Network traffic; Analyze; Detection;
D O I
10.1007/978-3-319-27161-3_45
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Smart phones, particularly the ones based on Android, have become the most popular devices. The surfing habits of users have been changed from the traditional PC terminal to mobile terminal officially. However, the mobile terminal application exposes more and more problems. Two common ways to analyze malware are source code analysis and dynamic behavior analysis. Researchers pay little attention to the network traffic generated by mobile terminal application. Nevertheless, shell technology makes source code analysis difficult while dynamic behavior analysis consumes too much resource. In fact, normal application and malware perform differently at the network level. We found that the features of HTTP packet are dramatically different in normal traffic and malicious traffic dataset. The application analysis from the perspective of network traffic can provide us a new way to detect malware.
引用
收藏
页码:497 / 507
页数:11
相关论文
共 50 条
  • [21] Android Platform Malware Analysis
    Alfalqi, Khalid
    Alghamdi, Rubayyi
    Waqdan, Mofareh
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2015, 6 (01) : 140 - 146
  • [22] Challenges in Android Malware Analysis
    Tong, Valerie Viet Triem
    Lalande, Jean Francois
    Leslous, Mourad
    ERCIM NEWS, 2016, (106): : 42 - +
  • [23] The analysis of android malware behaviors
    Department of Computer and Information Engineering, Huainan Normal University, Huainan, China
    Int. J. Secur. Appl., 3 (335-346):
  • [24] Framework for malware analysis in Android
    Urcuqui Lopez, Christian Camilo
    Navarro Cadavid, Andres
    SISTEMAS & TELEMATICA, 2016, 14 (37): : 45 - 56
  • [25] The Analysis of Android Malware Behaviors
    Fan Yuhui
    Xu Ning
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2015, 9 (03): : 335 - 345
  • [26] Android malware analysis in a nutshell
    Almomani, Iman
    Ahmed, Mohanned
    El-Shafai, Walid
    PLOS ONE, 2022, 17 (07):
  • [27] A Comparative Analysis of Android Malware
    Chavan, Neeraj
    Di Troia, Fabio
    Stamp, Mark
    PROCEEDINGS OF THE 5TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY (ICISSP), 2019, : 664 - 673
  • [28] Machine learning based hybrid behavior models for Android malware analysis
    Chuang, Hsin-Yu
    Wang, Sheng-De
    2015 IEEE INTERNATIONAL CONFERENCE ON SOFTWARE SECURITY AND RELIABILITY (QRS 2015), 2015, : 201 - 206
  • [29] TRAPDROID: Bare-Metal Android Malware Behavior Analysis Framework
    Alptekin, Halit
    Yildizli, Can
    Savas, Erkay
    Levi, Albert
    2019 21ST INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION TECHNOLOGY (ICACT): ICT FOR 4TH INDUSTRIAL REVOLUTION, 2019, : 664 - 671
  • [30] DroidPortrait: Android Malware Portrait Construction Based on Multidimensional Behavior Analysis
    Su, Xin
    Xiao, Lijun
    Li, Wenjia
    Liu, Xuchong
    Li, Kuan-Ching
    Liang, Wei
    APPLIED SCIENCES-BASEL, 2020, 10 (11):