Static analysis of executables for collaborative malware detection on Android


Autoria(s): Schmidt, A-D.; Bye, R.; Schmidt, H-G.; Clausen, J.; Kiraz, O.; Yuksel, K. A.; Camtepe, Seyit A.; Albayrak, S.
Data(s)

01/06/2009

Resumo

Smartphones are getting increasingly popular and several malwares appeared targeting these devices. General countermeasures to smartphone malwares are currently limited to signature-based antivirus scanners which efficiently detect known malwares, but they have serious shortcomings with new and unknown malwares creating a window of opportunity for attackers. As smartphones become host for sensitive data and applications, extended malware detection mechanisms are necessary complying with the corresponding resource constraints. The contribution of this paper is twofold. First, we perform static analysis on the executables to extract their function calls in Android environment using the command readelf. Function call lists are compared with malware executables for classifying them with PART, Prism and Nearest Neighbor Algorithms. Second, we present a collaborative malware detection approach to extend these results. Corresponding simulation results are presented.

Identificador

http://eprints.qut.edu.au/58109/

Publicador

IEEE Conference Publications

Relação

DOI:10.1109/ICC.2009.5199486

Schmidt, A-D., Bye, R., Schmidt, H-G., Clausen, J., Kiraz, O., Yuksel, K. A., Camtepe, Seyit A., & Albayrak, S. (2009) Static analysis of executables for collaborative malware detection on Android. In Proceedings of the IEEE International Conference on Communications, IEEE Conference Publications , Dresden, Germany, pp. 1-5.

Fonte

School of Electrical Engineering & Computer Science; Information Security Institute; Science & Engineering Faculty

Palavras-Chave #080303 Computer System Security #Smartphone security #Static analysis #collaborative malware detection
Tipo

Conference Paper