An improved Android malware detection scheme based on an evolving hybrid neuro-fuzzy classifier (EHNFC) and permission-based features

被引:33
作者
Altaher, Altyeb [1 ]
机构
[1] King Abdulaziz Univ, Fac Comp & Informat Technol Rabigh, Rabigh 21911, Saudi Arabia
关键词
Android security; Malware; Malware detection; Evolving clustering algorithm; Evolving hybrid neuro-fuzzy classifier; INFERENCE SYSTEM; SECURITY; ANFIS;
D O I
10.1007/s00521-016-2708-7
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The increasing number of Android devices and users has been attracting the attention of different types of attackers. Malware authors create new versions of malware from previous ones by implementing code obfuscation techniques. Obfuscated malware is potentially contributed to the exponential increase in the number of generated malware variants. Detection of obfuscated malware is a continuous challenge because it can easily evade the signature-based malware detectors, and behaviour-based detectors are not able to detect them accurately. Therefore, an efficient technique for obfuscated malware detection in Android-based smartphones is needed. In the literature on Android malware classification, few malware detection approaches are designed with the capability of detecting obfuscated malware. However, these malware detection approaches were not equipped with the capacity to improve their performance by learning and evolving their malware detection rules. Based on the concept of evolving soft computing systems, this paper proposes an evolving hybrid neuro-fuzzy classifier (EHNFC) for Android malware classification using permission-based features. The proposed EHNFC not only has the capability of detecting obfuscated malware using fuzzy rules, but can also evolve its structure by learning new malware detection fuzzy rules to improve its detection accuracy when used in detection of more malware applications. To this end, an evolving clustering method for adapting and evolving malware detection fuzzy rules was modified to incorporate an adaptive procedure for updating the radii and centres of clustered permission-based features. This modification to the evolving clustering method enhances cluster convergence and generates rules that are better tailored to the input data, hence improving the classification accuracy of the proposed EHNFC. The experimental results for the proposed EHNFC show that the proposal outperforms several state-of-the-art obfuscated malware classification approaches in terms of false negative rate (0.05) and false positive rate (0.05). The results also demonstrate that the proposal detects the Android malware better than other neuro-fuzzy systems (viz., the adaptive neuro-fuzzy inference system and the dynamic evolving neuro-fuzzy system) in terms of accuracy (90%).
引用
收藏
页码:4147 / 4157
页数:11
相关论文
共 50 条
  • [1] An improved Android malware detection scheme based on an evolving hybrid neuro-fuzzy classifier (EHNFC) and permission-based features
    Altyeb Altaher
    Neural Computing and Applications, 2017, 28 : 4147 - 4157
  • [2] APK Auditor: Permission-based Android malware detection system
    Kabakus, Abdullah Talha
    Alper, Dogru Ibrahim
    Aydin, Cetin
    DIGITAL INVESTIGATION, 2015, 13 : 1 - 14
  • [3] Permission-Based Malware Detection System for Android Using Machine Learning Techniques
    Arslan, Recep Sinan
    Dogru, Ibrahim Alper
    Barisci, Necaattin
    INTERNATIONAL JOURNAL OF SOFTWARE ENGINEERING AND KNOWLEDGE ENGINEERING, 2019, 29 (01) : 43 - 61
  • [4] Permission-Based Feature Scaling Method for Lightweight Android Malware Detection
    Zhu, Dali
    Xi, Tong
    KNOWLEDGE SCIENCE, ENGINEERING AND MANAGEMENT, KSEM 2019, PT I, 2019, 11775 : 714 - 725
  • [5] PFESG: Permission-based Android Malware Feature Extraction Algorithm
    Wang, Chengcheng
    Lan, Yuqing
    PROCEEDINGS OF 2017 VI INTERNATIONAL CONFERENCE ON NETWORK, COMMUNICATION AND COMPUTING (ICNCC 2017), 2017, : 106 - 109
  • [6] API and Permission-based Classification System for Android Malware Analysis
    Park, Jungsoo
    Chun, Hojin
    Jung, Souhwan
    2018 32ND INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING (ICOIN), 2018, : 930 - 935
  • [7] Explainable Classification Model for Android Malware Analysis Using API and Permission-Based Features
    Aslam, Nida
    Khan, Irfan Ullah
    Bader, Salma Abdulrahman
    Alansari, Aisha
    Alaqeel, Lama Abdullah
    Khormy, Razan Mohammed
    Alkubaish, Zahra Abdultawab
    Hussain, Tariq
    CMC-COMPUTERS MATERIALS & CONTINUA, 2023, 76 (03): : 3167 - 3188
  • [8] Permission-based Malware Detection Mechanisms for Smart Phones
    Su, Ming-Yang
    Chang, Wen-Chuan
    2014 INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING (ICOIN 2014), 2014, : 449 - 452
  • [9] A novel permission-based Android malware detection system using feature selection based on linear regression
    Durmuş Özkan Şahin
    Oğuz Emre Kural
    Sedat Akleylek
    Erdal Kılıç
    Neural Computing and Applications, 2023, 35 : 4903 - 4918
  • [10] A novel permission-based Android malware detection system using feature selection based on linear regression
    Sahin, Durmus Ozkan
    Kural, Oguz Emre
    Akleylek, Sedat
    Kilic, Erdal
    NEURAL COMPUTING & APPLICATIONS, 2023, 35 (07) : 4903 - 4918