Impact of Code Obfuscation on Android Malware Detection based on Static and Dynamic Analysis
Alessandro Bacci, Alberto Bartoli, Fabio Martinelli, Eric Medvet, Francesco Mercaldo, Corrado Aaron Visaggio
2018
Abstract
The huge diffusion of malware in mobile platform is plaguing users. New malware proliferates at a very fast pace: as a matter of fact, to evade the signature-based mechanism implemented in current antimalware, the application of trivial obfuscation techniques to existing malware is sufficient. In this paper, we show how the application of several morphing techniques affects the effectiveness of two widespread malware detection approaches based on Machine Learning coupled respectively with static and dynamic analysis. We demonstrate experimentally that dynamic analysis-based detection performs equally well in evaluating obfuscated and non-obfuscated malware. On the other hand, static analysis-based detection is more accurate on non-obfuscated samples but is greatly negatively affected by obfuscation: however, we also show that this effect can be mitigated by using obfuscated samples also in the learning phase.
DownloadPaper Citation
in Harvard Style
Bacci A., Bartoli A., Martinelli F., Medvet E., Mercaldo F. and Visaggio C. (2018). Impact of Code Obfuscation on Android Malware Detection based on Static and Dynamic Analysis.In Proceedings of the 4th International Conference on Information Systems Security and Privacy - Volume 1: ICISSP, ISBN 978-989-758-282-0, pages 379-385. DOI: 10.5220/0006642503790385
in Bibtex Style
@conference{icissp18,
author={Alessandro Bacci and Alberto Bartoli and Fabio Martinelli and Eric Medvet and Francesco Mercaldo and Corrado Aaron Visaggio},
title={Impact of Code Obfuscation on Android Malware Detection based on
Static and Dynamic Analysis},
booktitle={Proceedings of the 4th International Conference on Information Systems Security and Privacy - Volume 1: ICISSP,},
year={2018},
pages={379-385},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0006642503790385},
isbn={978-989-758-282-0},
}
in EndNote Style
TY - CONF
JO - Proceedings of the 4th International Conference on Information Systems Security and Privacy - Volume 1: ICISSP,
TI - Impact of Code Obfuscation on Android Malware Detection based on
Static and Dynamic Analysis
SN - 978-989-758-282-0
AU - Bacci A.
AU - Bartoli A.
AU - Martinelli F.
AU - Medvet E.
AU - Mercaldo F.
AU - Visaggio C.
PY - 2018
SP - 379
EP - 385
DO - 10.5220/0006642503790385