Towards a Network-Based Framework for Android Malware Detection and Characterization

被引:75
作者
Lashkari, Arash Habibi [1 ]
Kadir, Andi Fitriah A. [1 ]
Gonzalez, Hugo [1 ]
Mbah, Kenneth Fon [1 ]
Ghorbani, Ali A. [1 ]
机构
[1] UNB, CIC, Fredericton, NB, Canada
来源
2017 15TH ANNUAL CONFERENCE ON PRIVACY, SECURITY AND TRUST (PST) | 2017年
关键词
Android Malware; Malware Family; Malware Detection; Adware detection; Machine Learning;
D O I
10.1109/PST.2017.00035
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Mobile malware is so pernicious and on the rise, accordingly having a fast and reliable detection system is necessary for the users. In this research, a new detection and characterization system for detecting meaningful deviations in the network behavior of a smart-phone application is proposed. The main goal of the proposed system is to protect mobile device users and cellular infrastructure companies from malicious applications with just 9 traffic feature measurements. The proposed system is not only able to detect the malicious or masquerading apps, but can also identify them as general malware or specific malware (i.e. adware) on a mobile device. The proposed method showed the average accuracy (91.41%), precision (91.24%), and false positive (0.085) for five classifiers namely; Random Forest (RF), K-Nearest Neighbor (KNN), Decision Tree (DT), Random Tree (RT) and Regression (R). We also offer a labeled dataset of mobile malware traffic with 1900 applications includes benign and 12 different families of both adware and general malware.
引用
收藏
页码:233 / 242
页数:10
相关论文
共 22 条
[1]  
Alam Mohammed S., 2013, 2013 IEEE International Conference on Green Computing and Communications (GreenCom) and IEEE Internet of Things (iThings) and IEEE Cyber, Physical and Social Computing (CPSCom), P663, DOI 10.1109/GreenCom-iThings-CPSCom.2013.122
[2]  
[Anonymous], P 18 INT C DISTR COM
[3]  
[Anonymous], ARXIV12080564
[4]  
[Anonymous], 8 INT C NEXT GEN MOB
[5]  
[Anonymous], USENIX SEC S
[6]  
[Anonymous], P 2 INT C INF SYST S
[7]  
[Anonymous], DETECTING MALWARE IN
[8]  
[Anonymous], 35 IEEE S SEC PRIV
[9]  
[Anonymous], 2005, ACM SIGCOMM COMPUTER
[10]  
[Anonymous], 2011, DETECTING ANDROID MA