• DocumentCode
    3582903
  • Title

    Detecting malware and evaluating risk of app using Android permission-API system

  • Author

    Huan Zeng ; Yan Ren ; Qing-Xian Wang ; Neng-Qiang He ; Xu-Yang Ding

  • Author_Institution
    Sch. of Comput. Sci. & Eng., Univ. of Electron. Sci. & Technol. of China, Chengdu, China
  • fYear
    2014
  • Firstpage
    440
  • Lastpage
    443
  • Abstract
    The popularity and widely use of cellphone have greatly stimulated the spread of the apps. Meanwhile, security issues are increasing quickly, particularly for Android based devices. In this paper, through analyzing the android permissions system and android API system, we want to find out the relationship between permissions and APIs. Furthermore, we propose an approach to detect message intercepting malware. The contribution of this paper is threefold: first, we perform static analysis on the app to extract permissions and system APIs. In order to avoid permissions and APIs over declaration, we build java function call graph and find the system APIs been used; secondly, we proposed a light weight method to dynamic find out and update the relationship between permissions and APIs; third, we proposed a dynamic controlled method to detect android malwares. This proposed method is verified by extensive experiments.
  • Keywords
    Android (operating system); application program interfaces; invasive software; smart phones; Android based devices; Android permission-API system; Android permissions system; Java function call graph; application program interface; application risk evaluation; dynamic controlled method; malware detection; message detection; security issue; static analysis; Androids; Humanoid robots; Malware; Privacy; Reflection; Smart phones; APIs; Permission; detect malware; function call; risk analysis; static analysis;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Wavelet Active Media Technology and Information Processing (ICCWAMTIP), 2014 11th International Computer Conference on
  • Print_ISBN
    978-1-4799-7207-4
  • Type

    conf

  • DOI
    10.1109/ICCWAMTIP.2014.7073445
  • Filename
    7073445