首页> 外文会议>IEEE Conference on Communications and Network Security >XDroid: An Android permission control using Hidden Markov chain and online learning
【24h】

XDroid: An Android permission control using Hidden Markov chain and online learning

机译:XDroid:使用隐马尔可夫链和在线学习的Android权限控制

获取原文

摘要

Android devices provide opportunities for users to install third-party applications through various online markets. This brings security and privacy concerns to the users since third-party applications may pose serious threats. The exponential growth and diversity of these applications render conventional defenses ineffective, thus, Android smartphones often remain unprotected from novel malware. In this work, we present XDroid, an Android app and resource risk assessment framework using hidden Markov model. In this framework, we first map the applications' behaviors into an observation set, and we introduce a novel approach to attach timestamp to some observations to improve the accuracy of the model. We show that our HMM can be utilized to generates risk alerts to users when suspicious behaviors are found. Furthermore, an online learning model is introduced to enable the integration of the input from users and provide adaptive risk assessment to meet user's preferences. We evaluate our model through a set of experiments on a benchmark malware dataset DREBIN. Our experimental results demonstrate that the proposed model can assess malicious apps risk-levels with high accuracy. It also provide adaptive risk assessment based on input from users.
机译:Android设备为用户提供了通过各种在线市场安装第三方应用程序的机会。由于第三方应用程序可能构成严重威胁,因此这给用户带来了安全性和隐私问题。这些应用程序的指数级增长和多样性使传统的防御措施失效,因此,Android智能手机经常无法免受新型恶意软件的攻击。在这项工作中,我们介绍了XDroid,这是一个使用隐马尔可夫模型的Android应用程序和资源风险评估框架。在此框架中,我们首先将应用程序的行为映射到一个观察集中,然后引入一种新颖的方法将时间戳附加到一些观察上,以提高模型的准确性。我们表明,当发现可疑行为时,我们的HMM可用于为用户生成风险警报。此外,引入了在线学习模型,以实现对用户输入的集成,并提供自适应风险评估以满足用户的偏好。我们通过对基准恶意软件数据集DREBIN进行一组实验来评估我们的模型。我们的实验结果表明,该模型可以准确评估恶意应用程序的风险级别。它还根据用户的输入提供自适应风险评估。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号