Evaluating the risk of Android application: Design and implementation of static analysis system

A risk-evaluation-based system for static analysis of Android application is proposed as a reference model. As the known malicious software and normal applications are continuously collected and decompiled, the content in the application can be extracted and stored in local repository. A feature discovery routine is periodically executed to find the characteristic of malware families. For application to be evaluated, the risk information of the application is the similarity to the features discovered in the system.

[1]  Yuval Elovici,et al.  Automated Static Code Analysis for Classifying Android Applications Using Machine Learning , 2010, 2010 International Conference on Computational Intelligence and Security.

[2]  Sahin Albayrak,et al.  Static Analysis of Executables for Collaborative Malware Detection on Android , 2009, 2009 IEEE International Conference on Communications.

[3]  Kangbin Yim,et al.  Analysis on Maliciousness for Mobile Applications , 2012, 2012 Sixth International Conference on Innovative Mobile and Internet Services in Ubiquitous Computing.

[4]  Farnam Jahanian,et al.  CloudAV: N-Version Antivirus in the Network Cloud , 2008, USENIX Security Symposium.

[5]  Asaf Shabtai Malware Detection on Mobile Devices , 2010, 2010 Eleventh International Conference on Mobile Data Management.