Search Rank Fraud and Malware Detection in Google Play

作者: Mahmudur Rahman , Mizanur Rahman , Bogdan Carbunar , Duen Horng Chau

DOI: 10.1109/TKDE.2017.2667658

关键词:

摘要: Fraudulent behaviors in Google Play, the most popular Android app market, fuel search rank abuse and malware proliferation. To identify malware, previous work has focused on executable permission analysis. In this paper, we introduce FairPlay, a novel system that discovers leverages traces left behind by fraudsters, to detect both apps subjected fraud. FairPlay correlates review activities uniquely combines detected relations with linguistic behavioral signals gleaned from Play data (87 K apps, 2.9 M reviews, 2.4M reviewers, collected over half year), order suspicious apps. achieves 95 percent accuracy classifying gold standard datasets of fraudulent legitimate We show 75 identified engage hundreds currently evade Bouncer's detection technology. also helped discovery more than 1,000 reported for 193 reveal new type “coercive” campaign: users are harassed into writing positive install other

参考文章(20)
Borja Sanz, Igor Santos, Carlos Laorden, Xabier Ugarte-Pedrero, Pablo Garcia Bringas, Gonzalo Álvarez, PUMA: Permission Usage to Detect Malware in Android CISIS/ICEUTE/SOCO Special Sessions. pp. 289- 298 ,(2013) , 10.1007/978-3-642-33018-6_30
Takeaki Uno, An Efficient Algorithm for Enumerating Pseudo Cliques Algorithms and Computation. pp. 402- 414 ,(2007) , 10.1007/978-3-540-77120-3_36
Ron Kohavi, A study of cross-validation and bootstrap for accuracy estimation and model selection international joint conference on artificial intelligence. ,vol. 2, pp. 1137- 1143 ,(1995)
Kazuhisa Makino, Takeaki Uno, New Algorithms for Enumerating All Maximal Cliques Algorithm Theory - SWAT 2004. pp. 260- 272 ,(2004) , 10.1007/978-3-540-27810-8_23
Asaf Shabtai, Uri Kanonov, Yuval Elovici, Chanan Glezer, Yael Weiss, Andromaly: a behavioral malware detection framework for android devices intelligent information systems. ,vol. 38, pp. 161- 190 ,(2012) , 10.1007/S10844-010-0148-X
Iker Burguera, Urko Zurutuza, Simin Nadjm-Tehrani, Crowdroid Proceedings of the 1st ACM workshop on Security and privacy in smartphones and mobile devices - SPSM '11. pp. 15- 26 ,(2011) , 10.1145/2046614.2046619
Michael Grace, Yajin Zhou, Qiang Zhang, Shihong Zou, Xuxian Jiang, RiskRanker Proceedings of the 10th international conference on Mobile systems, applications, and services - MobiSys '12. pp. 281- 294 ,(2012) , 10.1145/2307636.2307663
Hao Peng, Chris Gates, Bhaskar Sarma, Ninghui Li, Yuan Qi, Rahul Potharaju, Cristina Nita-Rotaru, Ian Molloy, Using probabilistic generative models for ranking risks of Android apps Proceedings of the 2012 ACM conference on Computer and communications security - CCS '12. pp. 241- 252 ,(2012) , 10.1145/2382196.2382224
Justin Sahs, Latifur Khan, A Machine Learning Approach to Android Malware Detection european intelligence and security informatics conference. pp. 141- 147 ,(2012) , 10.1109/EISIC.2012.34
Yajin Zhou, Xuxian Jiang, Dissecting Android Malware: Characterization and Evolution ieee symposium on security and privacy. pp. 95- 109 ,(2012) , 10.1109/SP.2012.16