Detecting Android Malware by Combining System Call Sequence Relationships with Local Feature Calculation

Chien Hui Hung, Yi ming Chen, Chao Ching Wu

研究成果: 書貢獻/報告類型會議論文篇章同行評審

2 引文 斯高帕斯(Scopus)

摘要

Android, the most popular operating system in the mobile market, is the main target of hackers. The dynamic analysis in malware analysis is not affected by obfuscation and dynamic loading attacks. Therefore, this study uses a dynamic detection approach and uses system calls as a feature to represent the behaviour of an application. The TF-IDF feature processing method can assign different weights to the system call features according to the number of occurrences and the overall relationship, but this method uses one system call as a unit and therefore does not calculate the pre- and post- sequence relationships, which are important in system call sequences. This study uses the concept of n-grams to form system call groups combined with local TF-IDF to allow sequence-based data to be characterised by the pre-post relationship and importance of the sequences, and to analyse Android applications on a deep learning model that has shown excellent classification results in the field of malware detection. In this study, it is shown that this method improves the accuracy of multiple classification of apps by more than 3% and 11% for the unknown 2019 dataset.

原文???core.languages.en_GB???
主出版物標題New Trends in Computer Technologies and Applications - 25th International Computer Symposium, ICS 2022, Proceedings
編輯Sun-Yuan Hsieh, Ling-Ju Hung, Sheng-Lung Peng, Ralf Klasing, Chia-Wei Lee
發行者Springer Science and Business Media Deutschland GmbH
頁面362-373
頁數12
ISBN(列印)9789811995811
DOIs
出版狀態已出版 - 2022
事件25th International Computer Symposium on New Trends in Computer Technologies and Applications, ICS 2022 - Taoyuan, Taiwan
持續時間: 15 12月 202217 12月 2022

出版系列

名字Communications in Computer and Information Science
1723 CCIS
ISSN(列印)1865-0929
ISSN(電子)1865-0937

???event.eventtypes.event.conference???

???event.eventtypes.event.conference???25th International Computer Symposium on New Trends in Computer Technologies and Applications, ICS 2022
國家/地區Taiwan
城市Taoyuan
期間15/12/2217/12/22

指紋

深入研究「Detecting Android Malware by Combining System Call Sequence Relationships with Local Feature Calculation」主題。共同形成了獨特的指紋。

引用此