APK auditor : permission-based Android malware detection system

dc.authorid0000-0002-8669-823Xen_US
dc.authorid0000-0003-2181-4292en_US
dc.authorid0000-0001-9324-7157
dc.contributor.authorKabakuş, Abdullah Talha
dc.contributor.authorDoğru, İbrahim Alper
dc.contributor.authorAydın, Çetin
dc.date.accessioned2021-06-23T19:42:04Z
dc.date.available2021-06-23T19:42:04Z
dc.date.issued2015
dc.departmentBAİBÜ, Rektörlük, Bilgi İşlem Daire Başkanlığıen_US
dc.description.abstractAndroid operating system has the highest market share in 2014; making it the most widely used mobile operating system in the world. This fact makes Android users the biggest target group for malware developers. Trend analyses show large increase in mobile malware targeting the Android platform. Android's security mechanism is based on an instrument that informs users about which permissions the application needs to be granted before installing them. This permission system provides an overview of the application and may help gain awareness about the risks. However, we do not have enough information to conclude that standard users read or digital investigators understand these permissions and their implications. Digital investigators need to be on the alert for the presence of malware when examining Android devices, and can benefit from supporting tools that help them understand the capabilities of such malicious code. This paper presents a permission-based Android malware detection system, APK Auditor that uses static analysis to characterize and classify Android applications as benign or malicious. APK Auditor consists of three components: (1) A signature database to store extracted information about applications and analysis results, (2) an Android client which is used by end-users to grant application analysis requests, and (3) a central server responsible for communicating with both signature database and smartphone client and managing whole analysis process. To test system performance, 8762 applications in total, 1853 benign applications from Google's Play Store and 6909 malicious applications from different sources were collected and analyzed by the system developed. The results show that APK Auditor is able to detect most well-known malwares and highlights the ones with a potential in approximately 88% accuracy with a 0.925 specificity. (C) 2015 Elsevier Ltd. All rights reserved.en_US
dc.identifier.doi10.1016/j.diin.2015.01.001
dc.identifier.endpage14en_US
dc.identifier.issn1742-2876
dc.identifier.issn1873-202X
dc.identifier.scopus2-s2.0-84930520461en_US
dc.identifier.scopusqualityN/Aen_US
dc.identifier.startpage1en_US
dc.identifier.urihttps://doi.org/10.1016/j.diin.2015.01.001
dc.identifier.urihttps://hdl.handle.net/20.500.12491/8325
dc.identifier.volume13en_US
dc.identifier.wosWOS:000356057200002en_US
dc.identifier.wosqualityQ2en_US
dc.indekslendigikaynakWeb of Scienceen_US
dc.indekslendigikaynakScopusen_US
dc.institutionauthorKabakuş, Abdullah Talha
dc.language.isoenen_US
dc.publisherElsevier Sci Ltden_US
dc.relation.ispartofDigital Investigationen_US
dc.relation.publicationcategoryMakale - Uluslararası Hakemli Dergi - Kurum Öğretim Elemanıen_US
dc.rightsinfo:eu-repo/semantics/closedAccessen_US
dc.subjectAndroiden_US
dc.subjectSmartphoneen_US
dc.subjectMobile Securityen_US
dc.subjectMalwareen_US
dc.subjectStatic Analysisen_US
dc.titleAPK auditor : permission-based Android malware detection systemen_US
dc.typeArticleen_US

Dosyalar

Orijinal paket
Listeleniyor 1 - 1 / 1
Küçük Resim Yok
İsim:
abdullah-talha-kabakus.pdf
Boyut:
3.69 MB
Biçim:
Adobe Portable Document Format
Açıklama:
Tam metin/Full text