Machine Learning Techniques for Distinguishing Android Malware Variants

Irwansyah Irwansyah, Tri Basuki Kurniawan, Deshinta Arrova Dewi, Mohd Zaki Zakaria, Nurhafifi Binti Azmi

Abstract


The advancement of portable devices has been quickly and dramatically reshaping the usage trend and consumer preferences of electronic devices. Android, the most common mobile operating system, has a privilege-separated protection system with a complex access control mechanism. Android apps require permission to get access to confidential personal data and device resources. However, studies have shown that various malicious applications can acquire permission and target systems and applications by misleading users. In this study, we suggest a machine-learning approach to classifying Android malware variants by mining requested permissions, real permissions, suspicious calls, and API calls that were obtained and used in Android malware applications. Selected features were selected using a feature selection called KBest. Feature selection techniques are used to minimize the scale of the features and increase the performance. Two types of Naïve Bayes classifiers, called Multinomial distribution and multivariate Bernoulli distribution, are used and compared in malware family classification for text classification. Both naïve Bayes types are evaluated using a confusion matrix based on 4022 Android malware applications belonging to 10 families. Experimental findings show that the Multinomial distribution offers a reliable performance from three tests experiment with an average accuracy of 95%.


Keywords


Machine Learning; Android; Malware; Process Innovation

Full Text:

PDF

References


Patel, Z. D. (2018). Malware Detection in Android Operating System. In C. Control & I. C. A. C. C. C. N. 2018 Networking (Eds.), Proceedings - IEEE 2018 International Conference on Advances in Computing (pp. 366–370).

Qamar, A., Karim, A., & Chang, V. (2019). Mobile malware attacks: Review, taxonomy & future directions. Future Generation Computer Systems, 97, 887–909.

Hamid, I. R. A., Khalid, N. S., Abdullah, N. A., Rahman, N. H. A., & Wen, C. C. (2017). Android Malware Classification Using K-Means Clustering Algorithm. IOP Conference Series: Materials Science and Engineering, 226(1). https://doi.org/10.1088/1757- 899X/226/1/012105

Zeller, A. (2016). Mining apps for anomalies. Mining Apps for Anomalies, 1–1. https://doi.org/10.1145/2975961.2990476

Banin, S., & Dyrkolbotn, G. O. (2018). Multinomial malware classification via low-level features. Proceedings of the Digital Forensic Research Conference, DFRWS 2018 USA, 26, S107–S117. https://doi.org/10.1016/j.diin.2018.04.019

Zabidi, M. N. A., Maarof, M. A., & Zainal, A. (2012). Challenges in high accuracy of malware detection. Proceedings - 2012 IEEE Control and System Graduate Research Colloquium, ICSGRC 2012, July, 123–125. https://doi.org/10.1109/ICSGRC.2012.6287147

Kabakus, A. T., & Dogru, I. A. (2018). An in-depth analysis of Android malware using hybrid techniques. Digital Investigation, 24, 25–33. https://doi.org/10.1016/j.diin.2018.01.001

Ali-Gombe, A. I., Saltaformaggio, B., Ramanujam “Ram,” J. R., Xu, D., & Richard, G. G. (2018). Toward a more dependable hybrid analysis of Android malware using aspect-oriented programming. Computers and Security, 73, 235–248. https://doi.org/10.1016/j.cose.2017.11.006

Choudhary, M., & Kishore, B. (2018). HAAMD: Hybrid Analysis for Android Malware Detection. 2018 International Conference on Computer Communication and Informatics, ICCCI 2018, 1–4. https://doi.org/10.1109/ICCCI.2018.8441295

Qamar, A., Karim, A., & Chang, V. (2019). Mobile malware attacks: Review, taxonomy & future directions. Future Generation Computer Systems, 97, 887–909. https://doi.org/10.1016/j.future.2019.03.007

Thakur, D., Singh, J., Dhiman, G., Shabaz, M., & Gera, T. (2021). Identifying Major Research Areas and Minor Research Themes of Android Malware Analysis and Detection Field Using LSA. Complexity, 2021(1), 4551067. https://doi.org/https://doi.org/10.1155/2021/4551067

Ahvanooey, M. T., Li, Q., Rabbani, M., & Rajput, A. R. (2020). A Survey on Smartphones Security: Software Vulnerabilities, Malware, and Attacks. International Journal of Advanced Computer Science and Applications, 8(10). https://doi.org/10.14569/IJACSA.2017.081005

ZhiXiong. (2021). Dataset for Android Malware Detection | IEEE DataPort. https://ieee-dataport.org/documents/dataset-android-malware-detection

Huang, M., & Chong, F. K. (2023, December). Empowering Travelers with Airfare Comparison, Flight Tracking, and Real-Time Weather Forecasts on Android. In 2023 IEEE 11th Conference on Systems, Process & Control (ICSPC) (pp. 7-12). IEEE.




DOI: https://doi.org/10.47738/jads.v6i1.493

Refbacks

  • There are currently no refbacks.



Barcode

Journal of Applied Data Sciences

ISSN:2723-6471 (Online)
Publisher:Bright Publisher
Website:http://bright-journal.org/JADS
Email:taqwa@amikompurwokerto.ac.id (principal contact)
  support@bright-journal.org (technical issues)

This work is licensed under a Creative Commons Attribution-ShareAlike 4.0