MRDroid: a multi-act classification model for android malware risk assessment
conference contribution
posted on 2018-01-01, 00:00 authored by J Jiang, S Li, M Yu, K Chen, C Liu, W Huang, Gang LiGang Li© 2018 IEEE. Risk Score (RS) on Android is aiming at offering measurement to users for evaluating the apps' trustworthiness. Much work has been done to assess Android app's risk, but few jobs use various assessment systems to analyze Android apps with various malicious acts. However, it is hard for a single system to analyze those multiple categories Android apps. To overcome such limitations, we propose a multi-act classification model MRDroid for Android malware risk assessment in this paper, which presorts an app to one category, then uses the most suitable subsystem corresponding to that category to analyze the app for giving a RS. Base on this model, we implement an Android malware risk assessment system utilizing a machine learning solution with k-means algorithm for clustering benign and malware samples to various categories and the supervised algorithms for generating specific subsystems. It can be also used for Android malware detection under the condition of human confirmation. Experiments show that MRDroidprovides high detection precision and offers stable and reliable risk assessment. Though testing our system using the dataset different from the system used, the result indicates it is also effective in detecting some unknown samples.
History
Pagination
64-72Location
Chengdu, ChinaStart date
2018-10-09End date
2018-10-12ISBN-13
9781538655801Language
engPublication classification
E1 Full written paper - refereedCopyright notice
2018, IEEETitle of proceedings
IEEE MASS 2018: Proceedings of the 15th International Conference on Mobile Ad Hoc and Sensor SystemsEvent
Mobile Ad-hoc and Sensor Systems. International Conference (15th : 2018 : Chengdu, China)Publisher
IEEEPlace of publication
Piscataway, N.J.Usage metrics
Categories
No categories selectedLicence
Exports
RefWorksRefWorks
BibTeXBibTeX
Ref. managerRef. manager
EndnoteEndnote
DataCiteDataCite
NLMNLM
DCDC