ROOTECTOR: Robust Android Rooting Detection Framework Using Machine Learning Algorithms

被引:0
|
作者
Wael F. Elsersy
Nor Badrul Anuar
Mohd Faizal Ab Razak
机构
[1] Universiti Malaya,Department of Computer System and Technology, Faculty of Computer Science and Information Technology
[2] University Malaysia Pahang,Faculty of Computer Systems and Software Engineering
[3] Lebuhraya Tun Razak,undefined
关键词
Android root exploits; Rooting detection; Android Malware; Machine learning; Deep learning; Hyper-parameter optimizations;
D O I
暂无
中图分类号
学科分类号
摘要
Recently, the newly launched Google protect service alerts Android users from installing rooting tools. However, Android users lean toward rooting their Android devices to gain unlimited privileges, which allows them to customize their devices and allows Android Apps to bypass all Android security logging and security system. Rooting is one of the most malicious tactics that is used by Android malware that offers malware with the ability to open backdoor, server ports, access the Android kernel commands, and silently install malicious App and make them irremovable and undetectable. The existing Android malware detection frameworks propose embedded root-exploit code detection within the Android App. However, most frameworks overlook the rooted device detection part. In addition, many evasion techniques are developed to cloak the rooted devices. The above facts pose the challenging tasks of rooting detection and the current studies highlighted a deficiency in root detection research. Hence, this study proposes “Rootector” Android Rooting Detection Framework that uses machine learning classification techniques to detect Android rooted devices. The study proposes a model using machine learning algorithms that previously proves detection performance excellence in different fields of study. The research creates a rooting dataset with more than 13,000 mobile scans, which incorporates physical Android devices as well as simulators. Using the dataset, the study evaluates the performance of the ten machine learning classifiers to identify the best classification model. The study incorporates hyper-parameter optimization techniques to define the optimal machine learning parameters. The study adopts the LASSO (least absolute shrinkage and selection operator) regression algorithm to identify the best minimum number of classification features, which forms a compact dataset. Using LASSO regression, the study proposes a compact model for Android rooting detection. The experimental evaluation results show a very promising performance of Rootector framework with about 98.16% overall accuracy using the full dataset and slightly degraded to 97.13% using the compact dataset.
引用
收藏
页码:1771 / 1791
页数:20
相关论文
共 50 条
  • [21] Detection of Depression Using Machine Learning Algorithms
    Kumar, M. Ravi
    Pooja, Kadoori
    Udathu, Meghana
    Prasanna, J. Lakshmi
    Santhosh, Chella
    INTERNATIONAL JOURNAL OF ONLINE AND BIOMEDICAL ENGINEERING, 2022, 18 (04) : 155 - 163
  • [22] Fall Detection Using Machine Learning Algorithms
    Vallabh, Pranesh
    Malekian, Reza
    Ye, Ning
    Bogatinoska, Dijana Capeska
    2016 24TH INTERNATIONAL CONFERENCE ON SOFTWARE, TELECOMMUNICATIONS AND COMPUTER NETWORKS (SOFTCOM), 2016, : 51 - 59
  • [23] Ransomware detection using machine learning algorithms
    Bae, Seong Il
    Lee, Gyu Bin
    Im, Eul Gyu
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2020, 32 (18):
  • [24] Pothole Detection Using Machine Learning Algorithms
    Al Masud, A. K. M. Jobayer
    Sharin, Saraban Tasnim
    Shawon, Khandokar Farhan Tanvir
    Zaman, Zakia
    2021 15TH INTERNATIONAL CONFERENCE ON SIGNAL PROCESSING AND COMMUNICATION SYSTEMS (ICSPCS), 2021,
  • [25] A Suicidal Ideation Detection Framework on Social Media Using Machine Learning and Genetic Algorithms
    Basyouni, Abdallah
    Abdulkader, Hatem
    Elkilani, Wail S.
    Alharbi, Abdullah
    Xiao, Yulong
    Ali, Asmaa H.
    IEEE ACCESS, 2024, 12 : 124816 - 124833
  • [26] Bot-IMG: A framework for image-based detection of Android botnets using machine learning
    Yerima, Suleiman Y.
    Abul Bashar
    2021 IEEE/ACS 18TH INTERNATIONAL CONFERENCE ON COMPUTER SYSTEMS AND APPLICATIONS (AICCSA), 2021,
  • [27] Androhealthcheck: A malware detection system for android using machine learning
    Agrawal P.
    Trivedi B.
    Lecture Notes on Data Engineering and Communications Technologies, 2021, 66 : 35 - 41
  • [28] Android Spyware Detection Using Machine Learning: A Novel Dataset
    Qabalin, Majdi K.
    Naser, Muawya
    Alkasassbeh, Mouhammd
    SENSORS, 2022, 22 (15)
  • [29] Android Malware Detection Using Machine Learning on Image Patterns
    Darus, Falai Mohd
    Salleh, Noor Azurati Alimad
    Ariffin, Aswami Fadillah Mohd
    PROCEEDINGS OF THE 2018 CYBER RESILIENCE CONFERENCE (CRC), 2018,
  • [30] Android Malware Detection Using Parallel Machine Learning Classifiers
    Yerima, Suleiman Y.
    Sezer, Sakir
    Muttik, Igor
    2014 EIGHTH INTERNATIONAL CONFERENCE ON NEXT GENERATION MOBILE APPS, SERVICES AND TECHNOLOGIES (NGMAST), 2014, : 37 - 42