مرکز اطلاعات علمی Scientific Information Database (SID) - Trusted Source for Research and Academic Resources

video

مرکز اطلاعات علمی Scientific Information Database (SID) - Trusted Source for Research and Academic Resources

sound

مرکز اطلاعات علمی Scientific Information Database (SID) - Trusted Source for Research and Academic Resources

Persian Version

مرکز اطلاعات علمی Scientific Information Database (SID) - Trusted Source for Research and Academic Resources

View:

90
مرکز اطلاعات علمی Scientific Information Database (SID) - Trusted Source for Research and Academic Resources

Download:

138
مرکز اطلاعات علمی Scientific Information Database (SID) - Trusted Source for Research and Academic Resources

Cites:

Information Journal Paper

Title

Curious-Monkey: Evolved Monkey for Triggering Malicious Payloads in Android Malware

Pages

  131-143

Abstract

Dynamic Analysis is a prominent approach in analyzing the behavior of Android apps. To perform Dynamic Analysis, we need an Event Generator to provide proper environment for executing the app in an emulator. Monkey is the most popular Event Generator for Android apps in general, and is used in Dynamic Analysis of Android malware as well. Monkey provides high code coverage and yet high speed in generating events. However, in the case of malware analysis, Monkey su ers from several limitations. It only considers UI events but no system events, and because of random behavior in generating UI events, it may lose dropping the connectivity of the test environment during the analysis process. Moreover, it provides no defense against malware evasion techniques. In this paper, we try to enhance Monkey by reducing its limitations while preserving its advantages. The proposed approach has been implemented as an extended version of Monkey, named Monkey/fa?page=1&sort=1&ftyp=all&fgrp=all&fyrs=all" target="_blank">Curious-Monkey. Monkey/fa?page=1&sort=1&ftyp=all&fgrp=all&fyrs=all" target="_blank">Curious-Monkey provides facilities for handling system events, handling evasion techniques, and keeping the test environment's connectivity up during the analysis process. We conducted many experiments to evaluate the e ectiveness of the proposed tool regarding two important criteria in dynamic malware analysis: the ability to trigger malicious payloads and the code coverage. In the evaluation process, we used the Evadroid benchmark and the AMD malware data-set. Moreover, we compared Monkey/fa?page=1&sort=1&ftyp=all&fgrp=all&fyrs=all" target="_blank">Curious-Monkey with Monkey and Ares tools. The results show that the Monkey/fa?page=1&sort=1&ftyp=all&fgrp=all&fyrs=all" target="_blank">Curious-Monkey provides better results in case of triggering malicious payloads, as well as better code coverage.

Multimedia

  • No record.
  • Cites

  • No record.
  • References

  • No record.
  • Cite

    APA: Copy

    Hasan, Hayyan S., TORK LADANI, BEHROUZ, & Zamani, Bahman. (2021). Curious-Monkey: Evolved Monkey for Triggering Malicious Payloads in Android Malware. THE ISC INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 13(2), 131-143. SID. https://sid.ir/paper/978260/en

    Vancouver: Copy

    Hasan Hayyan S., TORK LADANI BEHROUZ, Zamani Bahman. Curious-Monkey: Evolved Monkey for Triggering Malicious Payloads in Android Malware. THE ISC INTERNATIONAL JOURNAL OF INFORMATION SECURITY[Internet]. 2021;13(2):131-143. Available from: https://sid.ir/paper/978260/en

    IEEE: Copy

    Hayyan S. Hasan, BEHROUZ TORK LADANI, and Bahman Zamani, “Curious-Monkey: Evolved Monkey for Triggering Malicious Payloads in Android Malware,” THE ISC INTERNATIONAL JOURNAL OF INFORMATION SECURITY, vol. 13, no. 2, pp. 131–143, 2021, [Online]. Available: https://sid.ir/paper/978260/en

    Related Journal Papers

  • No record.
  • Related Seminar Papers

  • No record.
  • Related Plans

  • No record.
  • Recommended Workshops






    Move to top
    telegram sharing button
    whatsapp sharing button
    linkedin sharing button
    twitter sharing button
    email sharing button
    email sharing button
    email sharing button
    sharethis sharing button