Monitoring smartphones for anomaly detection
Data(s) |
01/02/2009
|
---|---|
Resumo |
In this paper we demonstrate how to monitor a smartphone running Symbian operating system and Windows Mobile in order to extract features for anomaly detection. These features are sent to a remote server because running a complex intrusion detection system on this kind of mobile device still is not feasible due to capability and hardware limitations. We give examples on how to compute relevant features and introduce the top ten applications used by mobile phone users based on a study in 2005. The usage of these applications is recorded by a monitoring client and visualized. Additionally, monitoring results of public and self-written malwares are shown. For improving monitoring client performance, Principal Component Analysis was applied which lead to a decrease of about 80 of the amount of monitored features. |
Identificador | |
Publicador |
Kluwer Academic Publishers |
Relação |
DOI:10.1007/s11036-008-0113-x Schmidt, Aubrey-Derrick, Peters, Frank, Lamour, Florian, Scheel, Christian, Camtepe, Seyit A., & Albayrak, Sahin (2009) Monitoring smartphones for anomaly detection. Mobile Networks and Applications, 14(1), pp. 92-106. |
Direitos |
Copyright 2009 Kluwer Academic Publishers |
Fonte |
School of Electrical Engineering & Computer Science; Information Security Institute; Science & Engineering Faculty |
Palavras-Chave | #080303 Computer System Security #080307 Operating Systems #100503 Computer Communications Networks #Anomaly detection #Monitoring #Smartphones |
Tipo |
Journal Article |