MalRadar

恶意软件 计算机科学 隐病毒学 Android恶意软件 Android(操作系统) 计算机安全 移动恶意软件 恶意软件分析 元数据 万维网 操作系统
作者
Liu Wang,Haoyu Wang,He Ren,Ran Tao,Guozhu Meng,Xiapu Luo,Xuanzhe Liu
出处
期刊:Proceedings of the ACM on measurement and analysis of computing systems [Association for Computing Machinery]
卷期号:6 (2): 1-27 被引量:10
标识
DOI:10.1145/3530906
摘要

Mobile malware detection has attracted massive research effort in our community. A reliable and up-to-date malware dataset is critical to evaluate the effectiveness of malware detection approaches. Essentially, the malware ground truth should be manually verified by security experts, and their malicious behaviors should be carefully labelled. Although there are several widely-used malware benchmarks in our community (e.g., MalGenome, Drebin, Piggybacking and AMD, etc.), these benchmarks face several limitations including out-of-date, size, coverage, and reliability issues, etc. In this paper, we first make efforts to create MalRadar, a growing and up-to-date Android malware dataset using the most reliable way, i.e., by collecting malware based on the analysis reports of security experts. We have crawled all the mobile security related reports released by ten leading security companies, and used an automated approach to extract and label the useful ones describing new Android malware and containing Indicators of Compromise (IoC) information. We have successfully compiled MalRadar, a dataset that contains 4,534 unique Android malware samples (including both apks and metadata) released from 2014 to April 2021 by the time of this paper, all of which were manually verified by security experts with detailed behavior analysis. Then we characterize the MalRadar dataset from malware distribution channels, app installation methods, malware activation, malicious behaviors and anti-analysis techniques. We further investigate the malware evolution over the last decade. At last, we measure the effectiveness of commercial anti-virus engines and malware detection techniques on detecting malware in MalRadar. Our dataset can be served as the representative Android malware benchmark in the new era, and our observations can positively contribute to the community and boost a series of research studies on mobile security.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
Tim发布了新的文献求助10
刚刚
刚刚
zck7完成签到,获得积分10
刚刚
晴天不下雨完成签到,获得积分10
刚刚
优美伟泽发布了新的文献求助10
1秒前
1秒前
2秒前
靓丽枫叶完成签到 ,获得积分10
5秒前
5秒前
拼搏姒完成签到,获得积分10
6秒前
感谢闫晓涵转发科研通微信,获得积分50
6秒前
AidenHelix发布了新的文献求助10
6秒前
仂尤发布了新的文献求助10
6秒前
7秒前
8秒前
蛋卷发布了新的文献求助10
8秒前
Hero完成签到,获得积分10
9秒前
Eden完成签到 ,获得积分10
10秒前
赘婿应助jianjiao采纳,获得10
11秒前
11秒前
chemstation完成签到,获得积分10
11秒前
感谢满意谷冬转发科研通微信,获得积分50
12秒前
大胆的凡波应助拼搏姒采纳,获得10
12秒前
安静的幻儿完成签到,获得积分10
13秒前
木心长发布了新的文献求助10
13秒前
风轩轩发布了新的文献求助10
14秒前
单薄含巧发布了新的文献求助10
14秒前
ho完成签到 ,获得积分10
15秒前
JamesPei应助细腻的从蓉采纳,获得10
16秒前
邵大鹅鹅鹅完成签到,获得积分10
17秒前
17秒前
Tim完成签到,获得积分10
18秒前
和谐如容完成签到,获得积分10
18秒前
Df发布了新的文献求助10
18秒前
18秒前
22秒前
淡定访枫发布了新的文献求助10
22秒前
22秒前
23秒前
23秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
The Organometallic Chemistry of the Transition Metals 800
Chemistry and Physics of Carbon Volume 18 800
The Organometallic Chemistry of the Transition Metals 800
Leading Academic-Practice Partnerships in Nursing and Healthcare: A Paradigm for Change 800
The formation of Australian attitudes towards China, 1918-1941 640
Signals, Systems, and Signal Processing 610
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 物理 内科学 复合材料 催化作用 物理化学 光电子学 电极 细胞生物学 基因 无机化学
热门帖子
关注 科研通微信公众号,转发送积分 6437757
求助须知:如何正确求助?哪些是违规求助? 8252090
关于积分的说明 17558476
捐赠科研通 5496159
什么是DOI,文献DOI怎么找? 2898680
邀请新用户注册赠送积分活动 1875376
关于科研通互助平台的介绍 1716355