Telecommunications Science ›› 2016, Vol. 32 ›› Issue (8): 136-145.doi: 10.11959/j.issn.1000-0801.2016222

• Wide operating technology • Previous Articles     Next Articles

HTTP behavior characteristics generation and extraction approach for Android malware

Yaling LUO1,Wenwei LI2,Xin SU2,3   

  1. 1 Department of Computer,Guangdong Songshan Polytechnic College,Shaoguan 512126,China
    2 College of Computer Science and Electronics Engineering,Hunan University,Changsha 410082,China
    3 Hunan Provincial Key Laboratory of Network Investigational Technology, Hunan Police Academy,Changsha 410138,China
  • Online:2016-08-20 Published:2017-04-26
  • Supported by:
    The National Natural Science Foundation of China;The National Natural Science Foundation of China;Foundation of the Education Department of Guangdong Province of China;The Open Research Fund of Key Laboratory of Network Crime Investigation of Hunan Provincial Colleges

Abstract:

Growing of Android malware,not only seriously endangered the security of the Android market,but also brings challenges for detection.A generation and extraction approach of automatic Android malware behavioral signatures was proposed based on HTTP traffic.Firstly,the behavioral signatures were extracted from the traffic traces generated by Android malware.Then,network behavioral characteristics were extracted from the generated network traffic.Finally,these behavioral signatures were used to detect Android malware.The experimental results show that the approach is able to extract Android malware network traffic behavioral signature with accuracy and efficiency.

Key words: Androidmalware, HTTPtraffic, networkbehavioralcharacteristic, security

No Suggested Reading articles found!