Machine learning aided Android malware classification

Research output: Contribution to journalArticle

Abstract

The widespread adoption of Android devices and their capability to access significant private and confidential information have resulted in these devices being targeted by malware developers. Existing Android malware analysis techniques can be broadly categorized into static and dynamic analysis. In this paper, we present two machine learning aided approaches for static analysis of Android malware. The first approach is based on permissions and the other is based on source code analysis utilizing a bag-of-words representation model. Our permission-based model is computationally inexpensive, and is implemented as the feature of OWASP Seraphimdroid Android app that can be obtained from Google Play Store. Our evaluations of both approaches indicate an F-score of 95.1% and F-measure of 89% for the source code-based classification and permission-based classification models, respectively.

Bibliographical metadata

Original languageEnglish
Number of pages9
JournalComputers & Electrical Engineering: an international journal
Early online date22 Feb 2017
DOIs
StateE-pub ahead of print - 22 Feb 2017