Identification of Android Malware Families with Model Checking

Pasquale Battista, Francesco Mercaldo, Vittoria Nardone, Antonella Santone, Corrado Aaron Visaggio

2016

Abstract

Android malware is increasing more and more in complexity. Current signature based antimalware mechanisms are not able to detect zero-day attacks, also trivial code transformations may evade detection. Malware writers usually add functionality to existing malware or merge different pieces of malware code: this is the reason why Android malware is grouped into families, i.e., every family has in common the malicious behavior. In this paper we present a model checking based approach in detecting Android malware families by means of analysing and verifying the Java Bytecode that is produced when the source code is compiled. A preliminary investigation has been also conducted to assess the validity of the proposed approach.

Download


Paper Citation


in Harvard Style

Battista P., Mercaldo F., Nardone V., Santone A. and Visaggio C. (2016). Identification of Android Malware Families with Model Checking . In Proceedings of the 2nd International Conference on Information Systems Security and Privacy - Volume 1: ICISSP, ISBN 978-989-758-167-0, pages 542-547. DOI: 10.5220/0005809205420547

in Bibtex Style

@conference{icissp16,
author={Pasquale Battista and Francesco Mercaldo and Vittoria Nardone and Antonella Santone and Corrado Aaron Visaggio},
title={Identification of Android Malware Families with Model Checking},
booktitle={Proceedings of the 2nd International Conference on Information Systems Security and Privacy - Volume 1: ICISSP,},
year={2016},
pages={542-547},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0005809205420547},
isbn={978-989-758-167-0},
}


in EndNote Style

TY - CONF
JO - Proceedings of the 2nd International Conference on Information Systems Security and Privacy - Volume 1: ICISSP,
TI - Identification of Android Malware Families with Model Checking
SN - 978-989-758-167-0
AU - Battista P.
AU - Mercaldo F.
AU - Nardone V.
AU - Santone A.
AU - Visaggio C.
PY - 2016
SP - 542
EP - 547
DO - 10.5220/0005809205420547