返回
AIM: An Android Interpretable Malware detector based on application class modeling
DOI:10.1016/j.jisa.2023.103486.png)
摘要
En 中文
Smartphones are one of the IoT gadgets that have revolutionized our lives. Perhaps the most significant threat that endangers the security of smartphones is mobile malware. Despite the recent efforts to combat smartphone malware, it remains one of the significant challenges in smartphone security. Modern smartphone malware is complex and growing at a rapid pace. Thus, techniques based on machine learning have gained significant popularity in recent years. However, most of the existing methods fail to provide enough interpretability regarding their decisions. In other words, if an application is classified as malicious, it is not clear which part of the application is performing the malicious behavior. In this work, we address this gap by presenting an Android Interpretable Malware detection method (AIM) based on application class modeling. AIM utilizes hybrid analysis and a neural network classifier to distinguish malware from benign applications. Furthermore, AIM identifies malicious parts of malware applications by utilizing a novel class modeling approach based on used APIs and employing the attention mechanism. We implement AIM and evaluate its performance on up-to-date benchmark datasets. We also compare the results obtained by the proposed technique with others and investigate the impact of several feature sets on it. The results indicate that AIM outperforms most of the existing methods with an accuracy of more than 98.9% and correctly highlights malicious code snippets inside applications.
Keyword:
Android
Malware detection
Neural networks
Hybrid analysis
期刊
IF:
3.7
论文数:
1.9K
被引数:
4.9K
机构
引用论文
A Review of Android Malware Detection Approaches Based on Machine Learning基于机器学习的Android恶意软件检测方法综述
IEEE ACCESS
IF3.6
An Efficient Android Malware Detection System Based on Method-Level Behavioral Semantic Analysis基于方法级行为语义分析的高效Android恶意软件检测系统
IEEE ACCESS
IF3.6
Towards an interpretable deep learning model for mobile malware detection and family identification面向移动恶意软件检测和家族识别的可解释深度学习模型
COMPUTERS & SECURITY
IF5.4
A Systematic Literature Review of Android Malware Detection Using Static Analysis基于静态分析的Android恶意软件检测系统文献综述
IEEE ACCESS
IF3.6

