Sign up & Download
Sign in

An android application sandbox system for suspicious software detection

by Thomas Bl??sing, Leonid Batyuk, Aubrey Derrick Schmidt, Seyit Ahmet Camtepe, Sahin Albayrak
Proceedings of the 5th IEEE International Conference on Malicious and Unwanted Software, Malware 2010 ()

Abstract

Smartphones are steadily gaining popularity, creating new application areas as their capabilities increase in terms of computational power, sensors and communication. Emerging new features of mobile devices give opportunity to new threats. Android is one of the newer operating systems targeting smartphones. While being based on a Linux kernel, Android has unique properties and specific limitations due to its mobile nature. This makes it harder to detect and react upon malware attacks if using conventional techniques. In this paper, we propose an Android Application Sandbox (AASandbox) which is able to perform both static and dynamic analysis on Android programs to automatically detect suspicious applications. Static analysis scans the software for malicious patterns without installing it. Dynamic analysis executes the application in a fully isolated environment, i.e. sandbox, which intervenes and logs low-level interactions with the system for further analysis. Both the sandbox and the detection algorithms can be deployed in the cloud, providing a fast and distributed detection of suspicious software in a mobile software store akin to Google's Android Market. Additionally, AASandbox might be used to improve the efficiency of classical anti-virus applications available for the Android operating system.

Cite this document (BETA)

Readership Statistics

118 Readers on Mendeley
by Discipline
 
 
 
by Academic Status
 
38% Student (Master)
 
22% Ph.D. Student
 
10% Student (Postgraduate)
by Country
 
2% China
 
2% Malaysia
 
2% Brazil

Sign up today - FREE

Mendeley saves you time finding and organizing research. Learn more

  • All your research in one place
  • Add and import papers easily
  • Access it anywhere, anytime

Start using Mendeley in seconds!

Already have an account? Sign in