SeqAdver: Automatic Payload Construction and Injection in Sequence-based Android Adversarial Attack

有效载荷(计算) 对抗制 计算机科学 Android(操作系统) Android应用程序 序列(生物学) 操作系统 嵌入式系统 计算机安全 人工智能 网络数据包 生物 遗传学
作者
Fei Zhang,Ruitao Feng,Xiaofei Xie,Xiaohong Li,Lianshuan Shi
标识
DOI:10.1109/icdmw60847.2023.00172
摘要

Machine learning has achieved a great success in the field of Android malware detection. In order to avoid being caught by these ML-based Android malware detection, malware authors are inclined to initiate adversarial sample attacks by tampering with mobile applications. Although machine learning has high capability, it lacks robustness against adversarial attacks. Currently, many of the adversarial attacking tools not only inject dead code into target applications, which can never be executed, but also require the injection of many benign features into a malicious APK. This can be easily noticeable by program analysis techniques. In this paper, we propose SeqAdver, an automatic payload construction and injection tool, which aims to bring the adversarial attack to the next level by injecting a payload that allows execution without breaking the app’s original functionalities. These payloads are obtained from benign APKs at the Smali level and normalized into usable code snippets. The extracted Smali codes are carefully selected by filtering out ‘user-visible’ APIs and Intents. Therefore, payloads are able to be executed without any visible change noticed by the user. Besides, extracted payloads can be injected into different locations of the file based on sequence position or on the launcher class. Experiments were conducted to prove that randomly extracted payloads from benign apps are able to execute without causing any ‘user-visible’ behaviors or crashing the app when running the app in Android emulators.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
刚刚
刚刚
量子星尘发布了新的文献求助10
4秒前
兰兰不懒发布了新的文献求助10
5秒前
跳跃的鹏飞完成签到 ,获得积分0
5秒前
无敌幸运儿完成签到 ,获得积分10
6秒前
8秒前
Janet完成签到,获得积分10
9秒前
槿言完成签到 ,获得积分10
9秒前
秋秋完成签到,获得积分10
14秒前
Janet发布了新的文献求助10
14秒前
t铁核桃1985完成签到 ,获得积分10
17秒前
归海一刀完成签到 ,获得积分10
18秒前
晴空万里完成签到 ,获得积分10
23秒前
CadoreK完成签到 ,获得积分10
25秒前
矮小的凡阳完成签到 ,获得积分10
26秒前
31秒前
emilybei完成签到,获得积分10
35秒前
斯文败类应助加选采纳,获得10
36秒前
李某某完成签到 ,获得积分10
36秒前
香蕉飞瑶完成签到 ,获得积分10
37秒前
JZA完成签到 ,获得积分10
40秒前
耍酷鼠标完成签到 ,获得积分0
40秒前
DDDazhi应助DarianaEderer采纳,获得10
44秒前
李健的粉丝团团长应助zeyu采纳,获得10
44秒前
49秒前
MRJJJJ完成签到,获得积分10
52秒前
海阔天空完成签到 ,获得积分10
52秒前
54秒前
hysmoment发布了新的文献求助200
54秒前
张经纬发布了新的文献求助10
58秒前
boogiean完成签到,获得积分10
1分钟前
远方完成签到 ,获得积分10
1分钟前
guoxihan完成签到,获得积分10
1分钟前
1分钟前
lili完成签到,获得积分10
1分钟前
白昼の月完成签到 ,获得积分0
1分钟前
DDDazhi应助FranciscoZinnell采纳,获得10
1分钟前
652183758完成签到 ,获得积分10
1分钟前
吐丝麵包完成签到 ,获得积分10
1分钟前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Hope Teacher Rating Scale 1000
Entre Praga y Madrid: los contactos checoslovaco-españoles (1948-1977) 1000
Polymorphism and polytypism in crystals 1000
Encyclopedia of Materials: Plastics and Polymers 800
Signals, Systems, and Signal Processing 610
Discrete-Time Signals and Systems 610
热门求助领域 (近24小时)
化学 材料科学 医学 生物 工程类 纳米技术 有机化学 物理 生物化学 化学工程 计算机科学 复合材料 内科学 催化作用 光电子学 物理化学 电极 冶金 遗传学 细胞生物学
热门帖子
关注 科研通微信公众号,转发送积分 6094884
求助须知:如何正确求助?哪些是违规求助? 7924762
关于积分的说明 16405288
捐赠科研通 5225395
什么是DOI,文献DOI怎么找? 2793172
邀请新用户注册赠送积分活动 1775771
关于科研通互助平台的介绍 1650282