An improved Android malware detection scheme based on an evolving hybrid neuro-fuzzy classifier (EHNFC) and permission-based features

被引:33
作者
Altaher, Altyeb [1 ]
机构
[1] King Abdulaziz Univ, Fac Comp & Informat Technol Rabigh, Rabigh 21911, Saudi Arabia
关键词
Android security; Malware; Malware detection; Evolving clustering algorithm; Evolving hybrid neuro-fuzzy classifier; INFERENCE SYSTEM; SECURITY; ANFIS;
D O I
10.1007/s00521-016-2708-7
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The increasing number of Android devices and users has been attracting the attention of different types of attackers. Malware authors create new versions of malware from previous ones by implementing code obfuscation techniques. Obfuscated malware is potentially contributed to the exponential increase in the number of generated malware variants. Detection of obfuscated malware is a continuous challenge because it can easily evade the signature-based malware detectors, and behaviour-based detectors are not able to detect them accurately. Therefore, an efficient technique for obfuscated malware detection in Android-based smartphones is needed. In the literature on Android malware classification, few malware detection approaches are designed with the capability of detecting obfuscated malware. However, these malware detection approaches were not equipped with the capacity to improve their performance by learning and evolving their malware detection rules. Based on the concept of evolving soft computing systems, this paper proposes an evolving hybrid neuro-fuzzy classifier (EHNFC) for Android malware classification using permission-based features. The proposed EHNFC not only has the capability of detecting obfuscated malware using fuzzy rules, but can also evolve its structure by learning new malware detection fuzzy rules to improve its detection accuracy when used in detection of more malware applications. To this end, an evolving clustering method for adapting and evolving malware detection fuzzy rules was modified to incorporate an adaptive procedure for updating the radii and centres of clustered permission-based features. This modification to the evolving clustering method enhances cluster convergence and generates rules that are better tailored to the input data, hence improving the classification accuracy of the proposed EHNFC. The experimental results for the proposed EHNFC show that the proposal outperforms several state-of-the-art obfuscated malware classification approaches in terms of false negative rate (0.05) and false positive rate (0.05). The results also demonstrate that the proposal detects the Android malware better than other neuro-fuzzy systems (viz., the adaptive neuro-fuzzy inference system and the dynamic evolving neuro-fuzzy system) in terms of accuracy (90%).
引用
收藏
页码:4147 / 4157
页数:11
相关论文
共 50 条
  • [31] Evolving Neuro-Fuzzy network modeling approach based on recursive fuzzy instrumental variable
    Rocha Filho, Orlando Donato
    de Oliveira, Ginalber Luiz Serra
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2017, 32 (06) : 4159 - 4172
  • [32] Android Malware Detection Based on Structural Features of the Function Call Graph
    Yang, Yang
    Du, Xuehui
    Yang, Zhi
    Liu, Xing
    ELECTRONICS, 2021, 10 (02) : 1 - 18
  • [33] Using Capsule Networks for Android Malware Detection Through Orientation-Based Features
    Khan, Sohail
    Nauman, Mohammad
    Alsaif, Suleiman Ali
    Syed, Toqeer Ali
    Eleraky, Hassan Ahmad
    CMC-COMPUTERS MATERIALS & CONTINUA, 2022, 70 (03): : 5345 - 5362
  • [34] Hybrid Analysis Based Cross Inspection Framework for Android Malware Detection
    Bokolo, Biodoumoye
    Sur, GaganDeep
    Liu, Qingzhong
    Yuan, Fang
    Liang, Fan
    2022 IEEE/ACIS 20TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING RESEARCH, MANAGEMENT AND APPLICATIONS (SERA), 2022, : 99 - 105
  • [35] An optimal detection of android malware using dynamic attention-based LSTM classifier
    Bose, S. Jebin
    Kalaiselvi, R.
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2023, 44 (01) : 1425 - 1438
  • [36] An Ensemble Approach Based on Fuzzy Logic Using Machine Learning Classifiers for Android Malware Detection
    Atacak, Ismail
    APPLIED SCIENCES-BASEL, 2023, 13 (03):
  • [37] Android malware obfuscation variants detection method based on multi-granularity opcode features
    Tang, Junwei
    Li, Ruixuan
    Jiang, Yu
    Gu, Xiwu
    Li, Yuhua
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2022, 129 : 141 - 151
  • [38] Static detection approach for Android malware based on multi-context features
    Liu X.
    Lei Q.
    Du X.
    Liu K.
    Huazhong Keji Daxue Xuebao (Ziran Kexue Ban)/Journal of Huazhong University of Science and Technology (Natural Science Edition), 2020, 48 (02): : 85 - 90
  • [39] Methods to Select Features for Android Malware Detection Based on the Protection Level Analysis
    Lee, Chaeeun
    Ko, Eunnarae
    Lee, Kyungho
    INFORMATION SECURITY APPLICATIONS, WISA 2020, 2020, 12583 : 375 - 386
  • [40] SQL Injection Attacks Detection and Prevention Based on Neuro-Fuzzy Technique
    Nofal, Doaa E.
    Amer, Abeer A.
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON ADVANCED INTELLIGENT SYSTEMS AND INFORMATICS 2019, 2020, 1058 : 722 - 738