Full-Text Search:
Home|Journal Papers|About CNKI|User Service|FAQ|Contact Us|中文
《Journal of Wuhan University(Natural Science Edition)》 2018-05
Add to Favorite Get Latest Update

DroidFAR:An Anti-Obfuscation Method for Detecting Android Repackaged Application Based on Program Semantics

WANG Run;TANG Benxiao;WANG Lina;Key Laboratory of Aerospace Information Security and Trusted Computing,Ministry of Education,Wuhan University;School of Cyber Science and Engineering,Wuhan University;  
A semantic-based application repackaging detection approach is proposed for addressing the requirement of fast,accurate and obfuscated code evade attacks in large scale Android repackaged application detection.Our approach first performs a coarse-grained detection,which abstracts the program dependency graph of application as a kind of program semantic feature and calculates the similarity of semantic features in order to achieve a fast potential repackaged applications detection.Then the program dependency graph is utilized as application feature to achieve an accurate and fine-grained detection of potential repackaged applications.A prototype system,called DroidFAR,is designed and implemented based on our proposed approach.Experimental results show that our approach can achieve an accuracy of 95.1%and obtain false positive rate lower than 1.2%in application repackaging detection and it can effectively evade the code obfuscation attack.
【Fund】: 国家自然科学基金(U1536204);; 国家高技术发展计划(863)(2015AA016004)资助项目
【CateGory Index】: TP309.1;TP309
Download(CAJ format) Download(PDF format)
CAJViewer7.0 supports all the CNKI file formats; AdobeReader only supports the PDF format.
©2006 Tsinghua Tongfang Knowledge Network Technology Co., Ltd.(Beijing)(TTKN) All rights reserved