Nowadays, mobile devices are widely used to store and process user privacy and confidential data. With the popularity of Android platform, the cases of attacks against users’ privacy-sensitive data within Android applications are on the rise. Researchers have developed sophisticated static and dynamic analysis tools to detect information leakage. These methods cannot distinguish legitimate usage of sensitive data in benign apps from the intentional sensitive data leakages in malicious apps. Recently, malicious apps have been found to treat sensitive data differently from benign apps. These differences can be used to flag malicious apps based on their abnormal data flows. In this paper, we further find that some sensitive data flows show great difference between benign apps and malware. We can use these differences to select critical data flows. These critical flows can guide the identification of malware based on the abnormal usage of sensitive data. We present SCDFLOW, a tool that automatically selects critical data flows within Android applications and takes these critical flows as feature for abnormal behavior detection. Compared with MUDFLOW, SCDFLOW increases the true positive rate of malware detection by 5.73%~9.07% on different datasets and causes an ignorable effect on memory consumption.
from #AlexandrosSfakianakis via Alexandros G.Sfakianakis on Inoreader http://ift.tt/2pj5lXe
via IFTTT
Εγγραφή σε:
Σχόλια ανάρτησης (Atom)
Δημοφιλείς αναρτήσεις
-
Cutaneous squamous cell carcinoma (cSCC) are amongst the most common cancers with metastatic potential. Specific clinical and pathological “...
-
Greens Blue Flame supplies propane tank installation services and propane delivery in the Houston, TX area. We also offer bulk commercial de...
-
A Vietnam War Timeline [Note: This timeline is an abbreviated version of the more detailed timeline posted on the Public Broadcasting System...
-
Copyright © 1999-2007 by , Kai Froeb. Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free ...
-
IZE is a professional association dedicated to expanding the educational impact of zoos and aquariums worldwide, to enhance the understandin...
-
BibMe Free Bibliography & Citation Maker - MLA, APA, Chicago, Harvard from #AlexandrosSfakianakis via Alexandros G.Sfakianakis on Inor...
-
1,001 FREE cover letter examples and samples for consultants, career changers, and job hunters. The FIRST and BEST cover letters on the Inte...
-
Purpose. To assess the long-term clinical outcomes of conventional laser in situ keratomileusis (LASIK) for moderate to high myopia. Methods...
-
The National Booster Club Training Council, Providing Guidance, Education, Training and Support from #AlexandrosSfakianakis via Alexandros...
Δεν υπάρχουν σχόλια:
Δημοσίευση σχολίου