SeqAdver: Automatic Payload Construction and Injection in Sequence-based Android Adversarial Attack

有效载荷(计算) 对抗制 计算机科学 Android(操作系统) Android应用程序 序列(生物学) 操作系统 嵌入式系统 计算机安全 人工智能 网络数据包 生物 遗传学
作者
Fei Zhang,Ruitao Feng,Xiaofei Xie,Xiaohong Li,Lianshuan Shi
标识
DOI:10.1109/icdmw60847.2023.00172
摘要

Machine learning has achieved a great success in the field of Android malware detection. In order to avoid being caught by these ML-based Android malware detection, malware authors are inclined to initiate adversarial sample attacks by tampering with mobile applications. Although machine learning has high capability, it lacks robustness against adversarial attacks. Currently, many of the adversarial attacking tools not only inject dead code into target applications, which can never be executed, but also require the injection of many benign features into a malicious APK. This can be easily noticeable by program analysis techniques. In this paper, we propose SeqAdver, an automatic payload construction and injection tool, which aims to bring the adversarial attack to the next level by injecting a payload that allows execution without breaking the app’s original functionalities. These payloads are obtained from benign APKs at the Smali level and normalized into usable code snippets. The extracted Smali codes are carefully selected by filtering out ‘user-visible’ APIs and Intents. Therefore, payloads are able to be executed without any visible change noticed by the user. Besides, extracted payloads can be injected into different locations of the file based on sequence position or on the launcher class. Experiments were conducted to prove that randomly extracted payloads from benign apps are able to execute without causing any ‘user-visible’ behaviors or crashing the app when running the app in Android emulators.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
dew应助bbabb采纳,获得10
刚刚
桐桐应助杨沛采纳,获得10
1秒前
xch完成签到,获得积分20
1秒前
今天的云也很好看完成签到 ,获得积分10
2秒前
乐观半仙发布了新的文献求助10
3秒前
菠萝汁发布了新的文献求助20
4秒前
4秒前
outlast发布了新的文献求助10
5秒前
阿橘发布了新的文献求助10
5秒前
123566完成签到,获得积分10
5秒前
congyang完成签到 ,获得积分10
6秒前
6秒前
hh完成签到,获得积分10
6秒前
7秒前
zyy完成签到,获得积分10
8秒前
刘才华发布了新的文献求助10
8秒前
共享精神应助神勇若雁采纳,获得10
9秒前
9秒前
禹无极发布了新的文献求助10
9秒前
9秒前
lili完成签到 ,获得积分10
10秒前
maaicui发布了新的文献求助10
10秒前
11秒前
12秒前
恐龙先生完成签到,获得积分10
12秒前
13秒前
科研通AI2S应助科研通管家采纳,获得10
13秒前
liangchao发布了新的文献求助10
13秒前
鸟兽兽应助科研通管家采纳,获得10
13秒前
鸟兽兽应助科研通管家采纳,获得10
13秒前
英俊的铭应助科研通管家采纳,获得10
14秒前
共享精神应助科研通管家采纳,获得10
14秒前
小二郎应助科研通管家采纳,获得10
14秒前
归尘应助liuluqi采纳,获得30
14秒前
搜集达人应助科研通管家采纳,获得10
14秒前
鸟兽兽应助科研通管家采纳,获得10
14秒前
14秒前
14秒前
14秒前
科研通AI2S应助科研通管家采纳,获得10
14秒前
高分求助中
Metallurgy at high pressures and high temperatures 2000
PowerCascade: A Synthetic Dataset for Cascading Failure Analysis in Power Systems 1000
Relationship between smartphone usage in changes of ocular biometry components and refraction among elementary school children 800
The SAGE Dictionary of Qualitative Inquiry 610
Signals, Systems, and Signal Processing 610
An Introduction to Medicinal Chemistry 第六版习题答案 600
应急管理理论与实践 530
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 物理 内科学 复合材料 催化作用 物理化学 光电子学 电极 细胞生物学 基因 无机化学
热门帖子
关注 科研通微信公众号,转发送积分 6336013
求助须知:如何正确求助?哪些是违规求助? 8152005
关于积分的说明 17120506
捐赠科研通 5391644
什么是DOI,文献DOI怎么找? 2857634
邀请新用户注册赠送积分活动 1835204
关于科研通互助平台的介绍 1685919