Download malware? no, thanks: how formal methods can block update attacks

作者: Francesco Mercaldo , Vittoria Nardone , Antonella Santone , Corrado Aaron Visaggio

DOI: 10.1145/2897667.2897673

关键词:

摘要: In mobile malware landscape there are many techniques to inject malicious payload in a trusted application: one of the most common is represented by so-called update attack. After an apparently innocuous application installed on victim's device, user asked application, and behavior added application. this paper we propose static method based model checking able identify kind addiction, our localize at method-level. We obtain accuracy very close 1 identifying families implementing attack using real Android dataset composed 2,581 samples.

参考文章(28)
Fu Song, Tayssir Touili, Model-Checking for Android Malware Detection asian symposium on programming languages and systems. pp. 216- 235 ,(2014) , 10.1007/978-3-319-12736-1_12
Fu Song, Tayssir Touili, Efficient Malware Detection Using Model-Checking formal methods. pp. 418- 433 ,(2012) , 10.1007/978-3-642-32759-9_34
Rance Cleaveland, Steve Sims, The NCSU Concurrency Workbench computer aided verification. pp. 394- 397 ,(1996) , 10.1007/3-540-61474-5_87
Luca Tesei, Antonella Santone, Nicoletta De Francesco, Abstract interpretation and model checking for checking secure information flow in concurrent systems Fundamenta Informaticae. ,vol. 54, pp. 195- 211 ,(2002) , 10.5555/873906.873913
Gerardo Canfora, Francesco Mercaldo, Giovanni Moriano, Corrado Aaron Visaggio, Composition-Malware: Building Android Malware at Run Time availability, reliability and security. pp. 318- 326 ,(2015) , 10.1109/ARES.2015.64
Tielei Wang, Long Lu, Kangjie Lu, Wenke Lee, Simon Chung, Jekyll on iOS: when benign apps become evil usenix security symposium. pp. 559- 572 ,(2013)
Fu Song, Tayssir Touili, PoMMaDe: pushdown model-checking for malware detection foundations of software engineering. pp. 607- 610 ,(2013) , 10.1145/2491411.2494599
L. Tenenboim-Chekina, O. Barad, A. Shabtai, D. Mimran, L. Rokach, B. Shapira, Y. Elovici, Detecting application update attack on mobile devices through network featur international conference on computer communications. pp. 91- 92 ,(2013) , 10.1109/INFCOMW.2013.6970755
Antonella Santone, Gigliola Vaglini, Maria Luisa Villani, Incremental construction of systems: An efficient characterization of the lacking sub-system Science of Computer Programming. ,vol. 78, pp. 1346- 1367 ,(2013) , 10.1016/J.SCICO.2012.07.015
Sebastian Poeplau, Yanick Fratantonio, Antonio Bianchi, Christopher Kruegel, Giovanni Vigna, Execute This! Analyzing Unsafe and Malicious Dynamic Code Loading in Android Applications. network and distributed system security symposium. ,(2014) , 10.14722/NDSS.2014.23328