详细信息

基于权限和API特征结合的Android恶意软件检测方法    

Detecting Malware by Combining API and Permission Features

文献类型:期刊文献

中文题名:基于权限和API特征结合的Android恶意软件检测方法

英文题名:Detecting Malware by Combining API and Permission Features

作者:邵舒迪[1,2];虞慧群[1];范贵生[1]

机构:[1]华东理工大学信息科学与工程学院,上海200237;[2]上海市计算机软件评测重点实验,上海201112

年份:2017

卷号:44

期号:4

起止页码:135

中文期刊名:计算机科学

外文期刊名:Computer Science

收录:CSTPCD;;北大核心:【北大核心2014】;CSCD:【CSCD_E2017_2018】;

基金:国家自然科学基金(60905043;61073107;61173048);高等学校博士学科点专项科研基金(20130074110015);中央高校基本科研业务费专项基金(WH1314038)资助

语种:中文

中文关键词:API;权限;特征集合;Android应用;恶意软件检测

外文关键词:API; Permission; Feature set; Android applications; Malware detection

摘要:随着Android操作系统的广泛应用,基于Android平台的应用程序的数量日益增长。如何有效地识别恶意软件,对保护手机的安全性至关重要。提出了基于权限和API特征结合的Android恶意软件检测方法,该方法通过反编译apk文件来提取权限特征和API特征,并将两者相结合作为一个整体的特征集合。在此基础上,采用分类算法进行恶意软件的甄别。实验结果表明,该方法的判别准确率高于权限集合或API集合单独作为特征的判别方法,从而能更加有效地检测Android恶意应用程序。
With the use of Android OS,the number of Android applications is getting larger and larger.Therefore,how to detect malware is very important for protecting the mobile phone security.In this paper,we extracted API feature and permission feature by reverse-engineering the apk files respectively.Then,the two features are combined into a feature set.Finally,with different classification algorithms,the malwares can be detected.As a result,compared to single API or permission feature,higher detecting accuracy is gotten,which shows that the feature combination of permission and API is more efficient in detecting malicious Android applications.

参考文献:

正在载入数据...

版权所有©华东理工大学 重庆维普资讯有限公司 渝B2-20050021-7 
渝公网安备 50019002500408号 违法和不良信息举报中心