An improved Android malware detection scheme based on an evolving hybrid neuro-fuzzy classifier (EHNFC) and permission-based features

被引:33
作者
Altaher, Altyeb [1 ]
机构
[1] King Abdulaziz Univ, Fac Comp & Informat Technol Rabigh, Rabigh 21911, Saudi Arabia
关键词
Android security; Malware; Malware detection; Evolving clustering algorithm; Evolving hybrid neuro-fuzzy classifier; INFERENCE SYSTEM; SECURITY; ANFIS;
D O I
10.1007/s00521-016-2708-7
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The increasing number of Android devices and users has been attracting the attention of different types of attackers. Malware authors create new versions of malware from previous ones by implementing code obfuscation techniques. Obfuscated malware is potentially contributed to the exponential increase in the number of generated malware variants. Detection of obfuscated malware is a continuous challenge because it can easily evade the signature-based malware detectors, and behaviour-based detectors are not able to detect them accurately. Therefore, an efficient technique for obfuscated malware detection in Android-based smartphones is needed. In the literature on Android malware classification, few malware detection approaches are designed with the capability of detecting obfuscated malware. However, these malware detection approaches were not equipped with the capacity to improve their performance by learning and evolving their malware detection rules. Based on the concept of evolving soft computing systems, this paper proposes an evolving hybrid neuro-fuzzy classifier (EHNFC) for Android malware classification using permission-based features. The proposed EHNFC not only has the capability of detecting obfuscated malware using fuzzy rules, but can also evolve its structure by learning new malware detection fuzzy rules to improve its detection accuracy when used in detection of more malware applications. To this end, an evolving clustering method for adapting and evolving malware detection fuzzy rules was modified to incorporate an adaptive procedure for updating the radii and centres of clustered permission-based features. This modification to the evolving clustering method enhances cluster convergence and generates rules that are better tailored to the input data, hence improving the classification accuracy of the proposed EHNFC. The experimental results for the proposed EHNFC show that the proposal outperforms several state-of-the-art obfuscated malware classification approaches in terms of false negative rate (0.05) and false positive rate (0.05). The results also demonstrate that the proposal detects the Android malware better than other neuro-fuzzy systems (viz., the adaptive neuro-fuzzy inference system and the dynamic evolving neuro-fuzzy system) in terms of accuracy (90%).
引用
收藏
页码:4147 / 4157
页数:11
相关论文
共 50 条
  • [21] A Two-Layered Malware Detection Model Based on Permission for Android
    Lu, Tianliang
    Hou, Su
    2018 IEEE INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION ENGINEERING TECHNOLOGY (CCET), 2018, : 239 - 243
  • [22] Android Malware Detection Using Category-Based Permission Vectors
    Li, Xu
    Wang, Guojun
    Ali, Saqib
    He, QiLin
    ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, ICA3PP 2018, PT IV, 2018, 11337 : 399 - 414
  • [23] Android Malware Detection Method Based on Permission Complement and API Calls
    Yang, Jiyun
    Tang, Jiang
    Yan, Ran
    Xiang, Tao
    CHINESE JOURNAL OF ELECTRONICS, 2022, 31 (04) : 773 - 785
  • [24] Covalent Bond Based Android Malware Detection Using Permission and System Call Pairs
    Gupta, Rahul
    Sharma, Kapil
    Garg, R. K.
    CMC-COMPUTERS MATERIALS & CONTINUA, 2024, 78 (03): : 4283 - 4301
  • [25] AppPerm Analyzer: Malware Detection System Based on Android Permissions and Permission Groups
    Dogru, Ibrahim Alper
    Onder, Murat
    INTERNATIONAL JOURNAL OF SOFTWARE ENGINEERING AND KNOWLEDGE ENGINEERING, 2020, 30 (03) : 427 - 450
  • [26] Android malware detection based on sensitive features combination
    Yao, Xuanxia
    Li, Yang
    Shi, Zhiguo
    Liu, Kaijun
    Du, XiaoJiang
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2023, 35 (06) : 1
  • [27] The Analysis of Feature Selection Methods and Classification Algorithms in Permission Based Android Malware Detection
    Pehlivan, Ugur
    Baltaci, Nuray
    Acarturk, Cengiz
    Baykal, Nazife
    2014 IEEE SYMPOSIUM ON COMPUTATIONAL INTELLIGENCE IN CYBER SECURITY (CICS), 2014, : 81 - 88
  • [28] Network Intrusion Detection Based on Neuro-Fuzzy Classification
    Toosi, Adel Nadjaran
    Kahani, Mohsen
    Monsefi, Reza
    2006 INTERNATIONAL CONFERENCE ON COMPUTING & INFORMATICS (ICOCI 2006), 2006, : 345 - +
  • [29] Attack Tree Based Android Malware Detection with Hybrid Analysis
    Zhao, Shuai
    Li, Xiaohong
    Xu, Guangquan
    Zhang, Lei
    Feng, Zhiyong
    2014 IEEE 13TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM), 2014, : 380 - 387
  • [30] An unknown malware detection scheme based on the features of graph
    Zhao, Zongqu
    Wang, Junfeng
    Wang, Chonggang
    SECURITY AND COMMUNICATION NETWORKS, 2013, 6 (02) : 239 - 246