Improving Accuracy of Android Malware Detection with Lightweight Contextual Awareness

被引:24
作者
Allen, Joey [1 ]
Landen, Matthew [1 ]
Chaba, Sanya [1 ]
Ji, Yang [1 ]
Chung, Simon Pak Ho [1 ]
Lee, Wenke [1 ]
机构
[1] Georgia Inst Technol, Atlanta, GA 30332 USA
来源
34TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE (ACSAC 2018) | 2018年
关键词
Malware detection; Android Security;
D O I
10.1145/3274694.3274744
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In Android malware detection, recent work has shown that using contextual information of sensitive API invocation in the modeling of applications is able to improve the classification accuracy. However, the improvement brought by this context-awareness varies depending on how this information is used in the modeling. In this paper, we perform a comprehensive study on the effectiveness of using the contextual information in prior state-of-the-art detection systems. We find that this information has been "over-used" such that a large amount of non-essential metadata built into the models weakens the generalizability and longevity of the model, thus finally affects the detection accuracy. On the other hand, we find that the entrypoint of API invocation has the strongest impact on the classification correctness, which can further improve the accuracy if being properly captured. Based on this finding, we design and implement a lightweight, circumstance-aware detection system, named "PIKADROID" that only uses the API invocation and its entrypoint in the modeling. For extracting the meaningful entrypoints, PIKADROID applies a set of static analysis techniques to extract and sanitize the reachable entrypoints of a sensitive API, then constructs a frequency model for classification decision. In the evaluation, we show that this slim model significantly improves the detection accuracy on a data set of 23,631 applications by achieving an f-score of 97.41%, while maintaining a false positive rating of 0.96%.
引用
收藏
页码:210 / 221
页数:12
相关论文
共 50 条
  • [31] An effective behavior-based Android malware detection system
    Zou, Shihong
    Zhang, Jing
    Lin, Xiaodong
    SECURITY AND COMMUNICATION NETWORKS, 2015, 8 (12) : 2079 - 2089
  • [32] Detection of Repackaged Android Malware with Code-Heterogeneity Features
    Tian, Ke
    Yao, Danfeng
    Ryder, Barbara G.
    Tan, Gang
    Peng, Guojun
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2020, 17 (01) : 64 - 77
  • [33] A Review of Android Malware Detection Approaches Based on Machine Learning
    Liu, Kaijun
    Xu, Shengwei
    Xu, Guoai
    Zhang, Miao
    Sun, Dawei
    Liu, Haifeng
    IEEE ACCESS, 2020, 8 (08): : 124579 - 124607
  • [34] SEDMDroid: An Enhanced Stacking Ensemble Framework for Android Malware Detection
    Zhu, Huijuan
    Li, Yang
    Li, Ruidong
    Li, Jianqiang
    You, Zhuhong
    Song, Houbing
    IEEE TRANSACTIONS ON NETWORK SCIENCE AND ENGINEERING, 2021, 8 (02): : 984 - 994
  • [35] DroidDetector: Android Malware Characterization and Detection Using Deep Learning
    Yuan, Zhenlong
    Lu, Yongqiang
    Xue, Yibo
    TSINGHUA SCIENCE AND TECHNOLOGY, 2016, 21 (01) : 114 - 123
  • [36] Manilyzer: Automated Android Malware Detection through Manifest Analysis
    Feldman, Stephen
    Stadther, Dillon
    Wang, Bing
    2014 IEEE 11TH INTERNATIONAL CONFERENCE ON MOBILE AD HOC AND SENSOR SYSTEMS (MASS), 2014, : 767 - 772
  • [37] Android Malware Detection: An Empirical Investigation into Machine Learning Classifiers
    Raval, Aaditya
    Anwar, Mohd
    2024 IEEE INTERNATIONAL CONFERENCE ON INFORMATION REUSE AND INTEGRATION FOR DATA SCIENCE, IRI 2024, 2024, : 144 - 149
  • [38] Towards Accurate Labeling of Android Apps for Reliable Malware Detection
    Salem, Aleieldin
    PROCEEDINGS OF THE ELEVENTH ACM CONFERENCE ON DATA AND APPLICATION SECURITY AND PRIVACY (CODASPY '21), 2021, : 269 - 280
  • [39] The Malware Detection Challenge of Accuracy
    Akour, Mohammad
    Alsmadi, Izzat
    Alazab, Mamoun
    2016 2ND INTERNATIONAL CONFERENCE ON OPEN SOURCE SOFTWARE COMPUTING (OSSCOM), 2016,
  • [40] A survey of Static Android Malware Detection Techniques
    Abu Samra, Aiman Ahmad
    Qunoo, Hasan N.
    Al-Rubaie, Fatma
    El-Talli, Haneen
    2019 IEEE 7TH PALESTINIAN INTERNATIONAL CONFERENCE ON ELECTRICAL AND COMPUTER ENGINEERING (PICECE), 2019,