arrow
返回

AIM: An Android Interpretable Malware detector based on application class modeling

delete2023-06-01
delete4
PRE
AI
F
Farnood Faghihi *
M
Mohammad Zulkernine
S
Steven H. H. Ding
DOI:10.1016/j.jisa.2023.103486delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Smartphones are one of the IoT gadgets that have revolutionized our lives. Perhaps the most significant threat that endangers the security of smartphones is mobile malware. Despite the recent efforts to combat smartphone malware, it remains one of the significant challenges in smartphone security. Modern smartphone malware is complex and growing at a rapid pace. Thus, techniques based on machine learning have gained significant popularity in recent years. However, most of the existing methods fail to provide enough interpretability regarding their decisions. In other words, if an application is classified as malicious, it is not clear which part of the application is performing the malicious behavior. In this work, we address this gap by presenting an Android Interpretable Malware detection method (AIM) based on application class modeling. AIM utilizes hybrid analysis and a neural network classifier to distinguish malware from benign applications. Furthermore, AIM identifies malicious parts of malware applications by utilizing a novel class modeling approach based on used APIs and employing the attention mechanism. We implement AIM and evaluate its performance on up-to-date benchmark datasets. We also compare the results obtained by the proposed technique with others and investigate the impact of several feature sets on it. The results indicate that AIM outperforms most of the existing methods with an accuracy of more than 98.9% and correctly highlights malicious code snippets inside applications.
Keyword:
Android
Malware detection
Neural networks
Hybrid analysis

期刊

Journal of Information Security and Applications 封面图
Journal of Information Security and Applications
IF:
3.7
论文数:
1.9K
被引数:
4.9K

机构

Q
queens university - canada
学者数:
1.8W
论文数: 1.7W
被引数: 29
引用论文

引用论文

The structural basis of calcium transport by the calcium pump
err2007-12-01
err0
PREAI
errClaus Olesen; Martin Picard; Anne-Marie Lund Winther; Claus Gyrup; J. Preben Morth; Claus Oxvig; Jesper Vuust Møller; Poul Nissen
err分享
err收藏
A Review of Android Malware Detection Approaches Based on Machine Learning基于机器学习的Android恶意软件检测方法综述
err2020-01-01
err167
errOAAI
errLiu, Kaijun; Xu, Shengwei; Xu, Guoai; Zhang, Miao; Sun, Dawei; Liu, Haifeng
err分享
err收藏
Analyzing and Detecting Emerging Internet of Things Malware: A Graph-Based Approach
err2019-10-01
err103
PREAI
errAlasmary, Hisham; Khormali, Aminollah; Anwar, Afsah; Park, Jeman; Choi, Jinchun; Abusnaina, Ahmed; Awad, Amro; Nyang, Daehun; Mohaisen, Aziz
err分享
err收藏
Zika virus infection of adult and fetal STAT2 knock-out hamsters
err2017-07-01
err0
errOAAI
errVenkatraman Siddharthan; Arnaud J. Van Wettere; Rong Li; Jinxin Miao; Zhongde Wang; John D. Morrey; Justin G. Julander
err分享
err收藏
Dose Rate Effects on Radiolytic Synthesis of Gold−Silver Bimetallic Clusters in Solution
err1998-05-14
err0
PREAI
errM. Treguer; C. de Cointet; H. Remita; J. Khatouri; M. Mostafavi; J. Amblard; J. Belloni; R. de Keyzer
err分享
err收藏
Detecting mobile malware threats to homeland security through static analysis
err2014-02-01
err113
PREAI
errSeo, Seung-Hyun; Gupta, Aditi; Sallam, Asmaa Mohamed; Bertino, Elisa; Yim, Kangbin
err分享
err收藏
err分享
err收藏
学者 查看更多内容