SeqAdver: Automatic Payload Construction and Injection in Sequence-based Android Adversarial Attack

有效载荷(计算) 对抗制 计算机科学 Android(操作系统) Android应用程序 序列(生物学) 操作系统 嵌入式系统 计算机安全 人工智能 网络数据包 生物 遗传学
作者
Fei Zhang,Ruitao Feng,Xiaofei Xie,Xiaohong Li,Lianshuan Shi
标识
DOI:10.1109/icdmw60847.2023.00172
摘要

Machine learning has achieved a great success in the field of Android malware detection. In order to avoid being caught by these ML-based Android malware detection, malware authors are inclined to initiate adversarial sample attacks by tampering with mobile applications. Although machine learning has high capability, it lacks robustness against adversarial attacks. Currently, many of the adversarial attacking tools not only inject dead code into target applications, which can never be executed, but also require the injection of many benign features into a malicious APK. This can be easily noticeable by program analysis techniques. In this paper, we propose SeqAdver, an automatic payload construction and injection tool, which aims to bring the adversarial attack to the next level by injecting a payload that allows execution without breaking the app’s original functionalities. These payloads are obtained from benign APKs at the Smali level and normalized into usable code snippets. The extracted Smali codes are carefully selected by filtering out ‘user-visible’ APIs and Intents. Therefore, payloads are able to be executed without any visible change noticed by the user. Besides, extracted payloads can be injected into different locations of the file based on sequence position or on the launcher class. Experiments were conducted to prove that randomly extracted payloads from benign apps are able to execute without causing any ‘user-visible’ behaviors or crashing the app when running the app in Android emulators.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
李大胖胖完成签到 ,获得积分10
1秒前
小皮皮完成签到,获得积分10
1秒前
阿白发布了新的文献求助10
2秒前
swordshine完成签到,获得积分0
3秒前
czxy完成签到,获得积分10
4秒前
ttttt完成签到 ,获得积分10
5秒前
奥斯卡完成签到,获得积分0
5秒前
Jason完成签到 ,获得积分10
6秒前
任性的问雁完成签到,获得积分10
7秒前
西南西南完成签到,获得积分10
9秒前
滴滴完成签到,获得积分10
9秒前
科研通AI6.1应助MY采纳,获得30
9秒前
研究生完成签到 ,获得积分10
10秒前
Palamenda完成签到,获得积分10
10秒前
梦里的大子刊完成签到 ,获得积分10
11秒前
ccc完成签到 ,获得积分10
11秒前
QinCaibin完成签到,获得积分10
12秒前
TianFuAI完成签到,获得积分10
12秒前
爱笑半莲完成签到,获得积分10
12秒前
量子星尘发布了新的文献求助10
13秒前
13秒前
LockheedChengdu完成签到,获得积分10
14秒前
李健应助纯真的青雪采纳,获得10
14秒前
16秒前
1234@完成签到 ,获得积分10
16秒前
neurist完成签到,获得积分10
16秒前
17秒前
17秒前
知性的猎豹完成签到,获得积分10
17秒前
18秒前
李爱国应助科研通管家采纳,获得10
18秒前
18秒前
18秒前
18秒前
18秒前
辰熙应助科研通管家采纳,获得10
18秒前
18秒前
砍柴少年发布了新的文献求助10
20秒前
qing1245完成签到,获得积分10
21秒前
yuchangkun发布了新的文献求助10
21秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Handbook of pharmaceutical excipients, Ninth edition 5000
Aerospace Standards Index - 2026 ASIN2026 3000
Relation between chemical structure and local anesthetic action: tertiary alkylamine derivatives of diphenylhydantoin 1000
Signals, Systems, and Signal Processing 610
Discrete-Time Signals and Systems 610
Principles of town planning : translating concepts to applications 500
热门求助领域 (近24小时)
化学 材料科学 医学 生物 工程类 纳米技术 有机化学 物理 生物化学 化学工程 计算机科学 复合材料 内科学 催化作用 光电子学 物理化学 电极 冶金 遗传学 细胞生物学
热门帖子
关注 科研通微信公众号,转发送积分 6066701
求助须知:如何正确求助?哪些是违规求助? 7899004
关于积分的说明 16323261
捐赠科研通 5208426
什么是DOI,文献DOI怎么找? 2786324
邀请新用户注册赠送积分活动 1769013
关于科研通互助平台的介绍 1647818