arrow
Return

Evading Machine-Learning-Based Android Malware Detector for IoT Devices

delete2023-06-01
delete0
PRE
AI
G
G. Renjith *
P
P. Vinod
S
S. Aji
DOI:10.1109/JSYST.2022.3215014delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Securing the Android gadgets from malware activities is a major concern in Internet of Things, and the drastic rise in adversarial attacks makes this problem more challenging. Existing Android adversarial techniques focus on the feature vector space manipulations through complex deep learning techniques, and the operational integrity is also not experimented. This work implements two evasion attack scenarios on the feature vector of Android apks and creates functionality preserved Android malware. The malware samples are injected with features that are absent in malicious samples, but found in legitimate applications. The sample thus formed will be identical in functionality, besides having statistical dissimilarity. One of the attack scenarios implemented is through feature similarity using Euclidean distance (ED), which measures between malware and benign samples. The other version of attack is by generating variants through particle swarm optimization (PSO). We find that our evasion algorithms are not highly biased nor complex, making them easier to train and understand compared to generative adversarial neural networks. The experiments were carried out on real-world Android applications from AndroZoo and AMD. We could successfully achieve the highest performance of 100% evasion rate with the PSO algorithm and 89.6% evasion rate with the ED algorithm with the lowest computational complexity compared to machine learning or deep learning mechanisms.
Keywords:
Adversarial machine learning (ML)
Android
evasion attack
malware detection

Journal

I
IEEE Open Journal of Circuits and Systems
IF:
2.4
Papers:
4.5K
Citations:
387

Organization

U
University of Kerala
Scholars:
1.7K
Papers: 1.4K
Citations: 1.5K