Passer à la navigation principale Passer à la recherche Passer au contenu principal

Identifying unknown android malware with feature extractions and classification techniques

  • CNRS LTCI
  • Fortinet Technologies

Résultats de recherche: Le chapitre dans un livre, un rapport, une anthologie ou une collectionContribution à une conférenceRevue par des pairs

Résumé

Android malware unfortunately have little difficulty to sneak in marketplaces. While known malware and their variants are nowadays quite well detected by antivirus scanners, new unknown malware, which are fundamentally different from others (e.g. '0-day'), remain an issue. To discover such new malware, the SherlockDroid framework filters masses of applications and only keeps the most likely to be malicious for future inspection by antivirus teams. Apart from crawling applications from marketplaces, SherlockDroid extracts code-level features, and then classifies unknown applications with Alligator. Alligator is a classification tool that efficiently and automatically combines several classification algorithms. To demonstrate the efficiency of our approach, we have extracted properties and classified over 600,000 applications during two crawling campaigns in July 2014 and October 2014, with the detection of one new malware, Android/Odpa.A!tr.spy, and two new riskware. With other findings, this increases SherlockDroid's 'Hall of Shame' to 9 totally unknown malware and potentially unwanted applications.

langue originaleAnglais
titreProceedings - 14th IEEE International Conference on Trust, Security and Privacy in Computing and Communications, TrustCom 2015
EditeurInstitute of Electrical and Electronics Engineers Inc.
Pages182-189
Nombre de pages8
ISBN (Electronique)9781467379519
Les DOIs
étatPublié - 2 déc. 2015
Modification externeOui
Evénement14th IEEE International Conference on Trust, Security and Privacy in Computing and Communications, TrustCom 2015 - Helsinki, Finlande
Durée: 20 août 201522 août 2015

Série de publications

NomProceedings - 14th IEEE International Conference on Trust, Security and Privacy in Computing and Communications, TrustCom 2015
Volume1

Une conférence

Une conférence14th IEEE International Conference on Trust, Security and Privacy in Computing and Communications, TrustCom 2015
Pays/TerritoireFinlande
La villeHelsinki
période20/08/1522/08/15

Empreinte digitale

Examiner les sujets de recherche de « Identifying unknown android malware with feature extractions and classification techniques ». Ensemble, ils forment une empreinte digitale unique.

Contient cette citation