An analysis technology of Android application behavior based on sensors
Author:
Affiliation:

Clc Number:

TP391.1

Fund Project:

  • Article
  • |
  • Figures
  • |
  • Metrics
  • |
  • Reference
  • |
  • Related
  • |
  • Cited by
    Abstract:

    Most of the research on malware identification is based on the application program interface (API) call, but most of the current API based research does not consider the state of the device. However, the device state can directly reflect the running environment of the program, such as human operation or program automation, and it plays an important role in the analysis of application behavior. In this paper, a sensor based application behavior recognition technology is proposed. Firstly, the realtime status of the device is judged by the sensor data. Secondly, the algorithm is designed to identify the malicious application behavior using the multiple time series data generated by combining the API call time series and the first screen time series of graphical user interface (GUI). Finally, the malicious behavior analysis prototype system is designed and implemented, and it includes the functions of static piling, dynamic behavior monitoring and realtime status collection of sensors. Typical cases were selected to verify the accuracy of the proposed method, and the black box test was performed to verify the effectiveness of the malicious application identification method in this paper.

    Reference
    Related
    Cited by
Get Citation

Cite this article as: YANG Pin, RAN Tao, ZHANG Lei, lIU Yi. An analysis technology of Android application behavior based on sensors [J]. J Sichuan Univ: Nat Sci Ed, 2021, 58: 013002.

Copy
Share
Article Metrics
  • Abstract:
  • PDF:
  • HTML:
  • Cited by:
History
  • Received:June 10,2020
  • Revised:August 13,2020
  • Adopted:September 09,2020
  • Online: January 20,2021
  • Published: