MFDroid: A Stacking Ensemble Learning Framework for Android Malware Detection

Author:

Wang Xusheng,Zhang Linlin,Zhao Kai,Ding Xuhui,Yu MingmingORCID

Abstract

As Android is a popular a mobile operating system, Android malware is on the rise, which poses a great threat to user privacy and security. Considering the poor detection effects of the single feature selection algorithm and the low detection efficiency of traditional machine learning methods, we propose an Android malware detection framework based on stacking ensemble learning—MFDroid—to identify Android malware. In this paper, we used seven feature selection algorithms to select permissions, API calls, and opcodes, and then merged the results of each feature selection algorithm to obtain a new feature set. Subsequently, we used this to train the base learner, and set the logical regression as a meta-classifier, to learn the implicit information from the output of base learners and obtain the classification results. After the evaluation, the F1-score of MFDroid reached 96.0%. Finally, we analyzed each type of feature to identify the differences between malicious and benign applications. At the end of this paper, we present some general conclusions. In recent years, malicious applications and benign applications have been similar in terms of permission requests. In other words, the model of training, only with permission, can no longer effectively or efficiently distinguish malicious applications from benign applications.

Funder

The Natural Science Foundation of Xinjiang Uygur Autonomous Region

The National Natural Science Foundation of China

Publisher

MDPI AG

Subject

Electrical and Electronic Engineering,Biochemistry,Instrumentation,Atomic and Molecular Physics, and Optics,Analytical Chemistry

Reference31 articles.

1. Mobile Operating System Market Share Worldwidehttps://gs.statcounter.com/os-market-share/mobile/worldwide/

2. Mobile Security Review 2021https://www.av-comparatives.org/tests/mobile-security-review-2021/#google-android

3. A Lightweight On-Device Detection Method for Android Malware

4. A machine learning based approach to detect malicious android apps using discriminant system calls;Vinod;Future Gener. Comput. Syst.,2019

Cited by 16 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

1. Implementation of Stacking Ensemble Learning for Bank Term Deposit Acceptance Classification;2024 International Conference on Smart Computing, IoT and Machine Learning (SIML);2024-06-06

2. A study of the relationship of malware detection mechanisms using Artificial Intelligence;ICT Express;2024-06

3. A New Android Malware Detection Approach Using Multilayer Stacking;2024 10th International Conference on Web Research (ICWR);2024-04-24

4. AI-enabled approach for enhancing obfuscated malware detection: a hybrid ensemble learning with combined feature selection techniques;International Journal of System Assurance Engineering and Management;2024-03-28

5. Ensemble-learning-based android malware detection using hybrid features;2024 the 8th International Conference on Innovation in Artificial Intelligence;2024-03-16

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3