Randomizing Smartphone Malware Profiles against Statistical Mining Techniques - Data and Applications Security and Privacy XXVI Access content directly
Conference Papers Year : 2012

Randomizing Smartphone Malware Profiles against Statistical Mining Techniques

Abhijith Shastry
  • Function : Author
  • PersonId : 1010047
Murat Kantarcioglu
  • Function : Author
  • PersonId : 1010022
Yan Zhou
  • Function : Author
  • PersonId : 1010048
Bhavani Thuraisingham
  • Function : Author
  • PersonId : 1010049

Abstract

The growing use of smartphones opens up new opportunities for malware activities such as eavesdropping on phone calls, reading e-mail and call-logs, and tracking callers’ locations. Statistical data mining techniques have been shown to be applicable to detect smartphone malware. In this paper, we demonstrate that statistical mining techniques are prone to attacks that lead to random smartphone malware behavior. We show that with randomized profiles, statistical mining techniques can be easily foiled. Six in-house proof-of-concept malware programs are developed on the Android platform for this study. The malware programs are designed to perform privacy intrusion, information theft, and denial of service attacks. By simulating and tuning the frequency and interval of attacks, we aim to answer the following questions: 1) Can statistical mining algorithms detect smartphone malware by monitoring the statistics of smartphone usage? 2) Are data mining algorithms robust against malware with random profiles? 3) Can simple consolidation of random profiles over a fixed time frame prepare a higher quality data source for existing algorithms?
Fichier principal
Vignette du fichier
978-3-642-31540-4_18_Chapter.pdf (997.63 Ko) Télécharger le fichier
Origin : Files produced by the author(s)

Dates and versions

hal-01534774 , version 1 (08-06-2017)

Licence

Attribution

Identifiers

Cite

Abhijith Shastry, Murat Kantarcioglu, Yan Zhou, Bhavani Thuraisingham. Randomizing Smartphone Malware Profiles against Statistical Mining Techniques. 26th Conference on Data and Applications Security and Privacy (DBSec), Jul 2012, Paris, France. pp.239-254, ⟨10.1007/978-3-642-31540-4_18⟩. ⟨hal-01534774⟩
481 View
73 Download

Altmetric

Share

Gmail Facebook X LinkedIn More