Android Malware Network Behavior Analysis at HTTP Protocol Packet Level

被引:1
|
作者
Wang, Shanshan [1 ]
Hou, Shifeng [2 ]
Zhang, Lei [1 ]
Chen, Zhenxiang [1 ]
Han, Hongbo [1 ]
机构
[1] Univ Jinan, Sch Informat Sci & Engn, Jinan 250022, Peoples R China
[2] Lib Rizhao Polytech, Rizhao 276826, Peoples R China
来源
ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, ICA3PP 2015 | 2015年 / 9532卷
关键词
Android; Malware; Network traffic; Analyze; Detection;
D O I
10.1007/978-3-319-27161-3_45
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Smart phones, particularly the ones based on Android, have become the most popular devices. The surfing habits of users have been changed from the traditional PC terminal to mobile terminal officially. However, the mobile terminal application exposes more and more problems. Two common ways to analyze malware are source code analysis and dynamic behavior analysis. Researchers pay little attention to the network traffic generated by mobile terminal application. Nevertheless, shell technology makes source code analysis difficult while dynamic behavior analysis consumes too much resource. In fact, normal application and malware perform differently at the network level. We found that the features of HTTP packet are dramatically different in normal traffic and malicious traffic dataset. The application analysis from the perspective of network traffic can provide us a new way to detect malware.
引用
收藏
页码:497 / 507
页数:11
相关论文
共 50 条
  • [21] The analysis of android malware behaviors
    Department of Computer and Information Engineering, Huainan Normal University, Huainan, China
    Int. J. Secur. Appl., 3 (335-346): : 335 - 346
  • [22] The Analysis of Android Malware Behaviors
    Fan Yuhui
    Xu Ning
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2015, 9 (03): : 335 - 345
  • [23] Framework for malware analysis in Android
    Urcuqui Lopez, Christian Camilo
    Navarro Cadavid, Andres
    SISTEMAS & TELEMATICA, 2016, 14 (37): : 45 - 56
  • [24] Comparative Analysis of Android Malware Detection Techniques
    Painter, Nishant
    Kadhiwala, Bintu
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON DATA ENGINEERING AND COMMUNICATION TECHNOLOGY, ICDECT 2016, VOL 2, 2017, 469 : 131 - 139
  • [25] A Review on Malware Analysis for IoT and Android System
    Yadav C.S.
    Gupta S.
    SN Computer Science, 4 (2)
  • [26] DroidCat: Effective Android Malware Detection and Categorization via App-Level Profiling
    Cai, Haipeng
    Meng, Na
    Ryder, Barbara
    Yao, Daphne
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2019, 14 (06) : 1455 - 1470
  • [27] DroidMLN: A Markov Logic Network Approach to Detect Android Malware
    Rahman, Mahmuda
    2013 12TH INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND APPLICATIONS (ICMLA 2013), VOL 2, 2013, : 166 - 169
  • [28] Machine learning based hybrid behavior models for Android malware analysis
    Chuang, Hsin-Yu
    Wang, Sheng-De
    2015 IEEE INTERNATIONAL CONFERENCE ON SOFTWARE SECURITY AND RELIABILITY (QRS 2015), 2015, : 201 - 206
  • [29] TRAPDROID: Bare-Metal Android Malware Behavior Analysis Framework
    Alptekin, Halit
    Yildizli, Can
    Savas, Erkay
    Levi, Albert
    2019 21ST INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION TECHNOLOGY (ICACT): ICT FOR 4TH INDUSTRIAL REVOLUTION, 2019, : 664 - 671
  • [30] Research of Android Malware Detection Based on Network Traffic Monitoring
    Li, Jun
    Zhai, Lidong
    Zhang, Xinyou
    Quan, Daiyong
    PROCEEDINGS OF THE 2014 9TH IEEE CONFERENCE ON INDUSTRIAL ELECTRONICS AND APPLICATIONS (ICIEA), 2014, : 1739 - +