ANDROID MALWARE CLASSIFICATION APPROACH BASED ON HOST-LEVEL ENCRYPTED TRAFFIC SHAPING

被引:3
|
作者
Zhou, Jie [1 ]
Niu, Weina [1 ]
Zhang, Xiaosong [1 ]
Peng, Yujie [1 ]
Wu, Hao [1 ]
Hu, Teng [1 ]
机构
[1] Univ Elect Sci & Technol China, Sch Comp Sci & Engn, Chengdu 611731, Peoples R China
基金
中国国家自然科学基金;
关键词
Android malware classification; Host-level traffic; Encrypted traffic analysis; Machine learning; Confusion classifier;
D O I
10.1109/ICCWAMTIP51612.2020.9317429
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the development of mobile terminals, smartphones have attracted a very huge number of users with their powerful functions. Among them, Android system is famous for its open-source and convenience, which occupies a large market share. But this also leads many attackers to use their malware to gain benefits quickly, which make it necessary to design a practical android malware detection approach. At present, there are not many pieces of research on detecting malware by analyzing Android malicious traffic. This paper examines the characteristics of malicious traffic on the host computer to construct a traffic fingerprint. It combines machine learning algorithms to build a practical detection approach which is also suitable for encrypted traffic. To distinguish similar fuzzy traffic, an additional layer named confusion classifier is added to help further malware classification. This paper uses a real-world dataset called CICAndMal2017 and simulates two classification scenarios: malware binary detection and malware category classification. The experimental results show that the accuracy of the malware binary detection reached 98.8% while the accuracy rate of malware category classification is 95.2%.
引用
收藏
页码:246 / 249
页数:4
相关论文
共 50 条
  • [1] HoleMal: A lightweight IoT malware detection framework based on efficient host-level traffic processing
    Chen, Ziqian
    Xia, Wei
    Li, Zhen
    Xiong, Gang
    Gou, Gaopeng
    Zhang, Heng
    Li, Haikuo
    Xiao, Junchao
    COMPUTERS & SECURITY, 2025, 152
  • [2] Hierarchical Classification of Android Malware Traffic
    Bovenzi, Giampaolo
    Persico, Valerio
    Pescape, Antonio
    Piscitelli, Anna
    Spadari, Vincenzo
    2022 IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS, TRUSTCOM, 2022, : 1354 - 1359
  • [3] A collaborative approach on host and network level android malware detection
    Bae, Chanwoo
    Shin, Seungwon
    SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (18) : 5639 - 5650
  • [4] A Risk Classification Based Approach for Android Malware Detection
    Ye, Yilin
    Wu, Lifa
    Hong, Zheng
    Huang, Kangyu
    KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2017, 11 (02): : 959 - 981
  • [5] An Android Malware Detection and Classification Approach Based on Contrastive Lerning
    Yang, Shaojie
    Wang, Yongjun
    Xu, Haoran
    Xu, Fangliang
    Chen, Mantun
    COMPUTERS & SECURITY, 2022, 123
  • [6] Classification of Encrypted IoT Traffic despite Padding and Shaping
    Engelberg, Aviv
    Wool, Avishai
    PROCEEDINGS OF THE 21ST WORKSHOP ON PRIVACY IN THE ELECTRONIC SOCIETY, WPES 2022, 2022, : 1 - 13
  • [7] END-TO-END ANDROID MALWARE CLASSIFICATION BASED ON PURE TRAFFIC IMAGES
    Peng Yujie
    Niu Weina
    Zhang Xiaosong
    Zhou Jie
    Wu Hao
    Chen Ruidong
    2020 17TH INTERNATIONAL COMPUTER CONFERENCE ON WAVELET ACTIVE MEDIA TECHNOLOGY AND INFORMATION PROCESSING (ICCWAMTIP), 2020, : 240 - 245
  • [8] An Attention-Based Approach to Enhance the Detection and Classification of Android Malware
    Ghourabi, Abdallah
    CMC-COMPUTERS MATERIALS & CONTINUA, 2024, 80 (02): : 2743 - 2760
  • [9] A Hybrid Analysis-Based Approach to Android Malware Family Classification
    Ding, Chao
    Luktarhan, Nurbol
    Lu, Bei
    Zhang, Wenhui
    ENTROPY, 2021, 23 (08)
  • [10] A novel approach based on adaptive online analysis of encrypted traffic for identifying Malware in IIoT
    Niu, Zequn
    Xue, Jingfeng
    Qu, Dacheng
    Wang, Yong
    Zheng, Jun
    Zhu, Hongfei
    INFORMATION SCIENCES, 2022, 601 : 162 - 174