Catch Me If You Can: Evaluating Android Anti-Malware Against Transformation Attacks

被引:122
|
作者
Rastogi, Vaibhav [1 ]
Chen, Yan [1 ,2 ]
Jiang, Xuxian [3 ]
机构
[1] Northwestern Univ, Dept Elect Engn & Comp Sci, Evanston, IL 60208 USA
[2] Beijing Univ Posts & Telecommun, State Key Lab Networking & Switching Technol, Beijing 100876, Peoples R China
[3] N Carolina State Univ, Dept Comp Sci, Raleigh, NC 27695 USA
关键词
Mobile; malware; anti-malware; Android; PAIRWISE STATISTICAL SIGNIFICANCE; SEQUENCE;
D O I
10.1109/TIFS.2013.2290431
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Mobile malware threats (e. g., on Android) have recently become a real concern. In this paper, we evaluate the state-of-the-art commercial mobile anti-malware products for Android and test how resistant they are against various common obfuscation techniques (even with known malware). Such an evaluation is important for not only measuring the available defense against mobile malware threats, but also proposing effective, next-generation solutions. We developed DroidChameleon, a systematic framework with various transformation techniques, and used it for our study. Our results on 10 popular commercial anti-malware applications for Android are worrisome: none of these tools is resistant against common malware transformation techniques. In addition, a majority of them can be trivially defeated by applying slight transformation over known malware with little effort for malware authors. Finally, in light of our results, we propose possible remedies for improving the current state of malware detection on mobile devices.
引用
收藏
页码:99 / 108
页数:10
相关论文
共 50 条
  • [1] A Critical Analysis on Android Vulnerabilities, Malware, Anti-malware and Anti-malware Bypassing
    Alrammal, Muath
    Naveed, Munir
    Sallam, Suzan
    Tsaramirsis, Georgios
    JOURNAL OF INTERNET TECHNOLOGY, 2022, 23 (07): : 1651 - 1661
  • [2] A Deep Camouflage: Evaluating Android’s Anti-malware Systems Robustness Against Hybridization of Obfuscation Techniques with Injection Attacks
    Khaled Bakour
    Halil Murat Ünver
    Razan Ghanem
    Arabian Journal for Science and Engineering, 2019, 44 : 9333 - 9347
  • [3] A Deep Camouflage: Evaluating Android's Anti-malware Systems Robustness Against Hybridization of Obfuscation Techniques with Injection Attacks
    Bakour, Khaled
    Unver, Halil Murat
    Ghanem, Razan
    ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2019, 44 (11) : 9333 - 9347
  • [4] A Malware Evasion Technique for Auditing Android Anti-Malware Solutions
    Mirza, Samrah
    Abbas, Haider
    Bin Shahid, Waleed
    Shafqat, Narmeen
    Fugini, Mariagrazia
    Iqbal, Zafar
    Muhammad, Zia
    2021 IEEE 30TH INTERNATIONAL CONFERENCE ON ENABLING TECHNOLOGIES: INFRASTRUCTURE FOR COLLABORATIVE ENTERPRISES (WETICE 2021), 2021, : 125 - 130
  • [5] Mystique: Evolving Android Malware for Auditing Anti-Malware Tools
    Meng, Guozhu
    Xue, Yinxing
    Mahinthan, Chandramohan
    Narayanan, Annamalai
    Liu, Yang
    Zhang, Jie
    Chen, Tieming
    ASIA CCS'16: PROCEEDINGS OF THE 11TH ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2016, : 365 - 376
  • [6] Effectiveness of Android Obfuscation on Evading Anti-malware
    Chua, Melissa
    Balachandran, Vivek
    PROCEEDINGS OF THE EIGHTH ACM CONFERENCE ON DATA AND APPLICATION SECURITY AND PRIVACY (CODASPY'18), 2018, : 143 - 145
  • [7] On the vulnerability of anti-malware solutions to DNS attacks
    Nadler, Asaf
    Bitton, Ron
    Brodt, Oleg
    Shabtai, Asaf
    COMPUTERS & SECURITY, 2022, 116
  • [8] On the vulnerability of anti-malware solutions to DNS attacks
    Nadler, Asaf
    Bitton, Ron
    Brodt, Oleg
    Shabtai, Asaf
    Computers and Security, 2022, 116
  • [9] Anti-malware engines under adversarial attacks
    Selvaganapathy S.
    Sadasivam S.
    International Journal of Computers and Applications, 2022, 44 (08) : 791 - 804
  • [10] A Systematic Evaluation of Android Anti-Malware Tools for Detection of Contemporary Malware
    Muhammad, Zia
    Amjad, Muhammad Faisal
    Abbas, Haider
    Iqbal, Zafar
    Azhar, Anique
    Yasin, Ahsan
    Iesar, Hasan
    2021 IEEE 19TH INTERNATIONAL CONFERENCE ON EMBEDDED AND UBIQUITOUS COMPUTING (EUC 2021), 2021, : 117 - 124