SeqAdver: Automatic Payload Construction and Injection in Sequence-based Android Adversarial Attack

有效载荷(计算) 对抗制 计算机科学 Android(操作系统) Android应用程序 序列(生物学) 操作系统 嵌入式系统 计算机安全 人工智能 网络数据包 生物 遗传学
作者
Fei Zhang,Ruitao Feng,Xiaofei Xie,Xiaohong Li,Lianshuan Shi
标识
DOI:10.1109/icdmw60847.2023.00172
摘要

Machine learning has achieved a great success in the field of Android malware detection. In order to avoid being caught by these ML-based Android malware detection, malware authors are inclined to initiate adversarial sample attacks by tampering with mobile applications. Although machine learning has high capability, it lacks robustness against adversarial attacks. Currently, many of the adversarial attacking tools not only inject dead code into target applications, which can never be executed, but also require the injection of many benign features into a malicious APK. This can be easily noticeable by program analysis techniques. In this paper, we propose SeqAdver, an automatic payload construction and injection tool, which aims to bring the adversarial attack to the next level by injecting a payload that allows execution without breaking the app’s original functionalities. These payloads are obtained from benign APKs at the Smali level and normalized into usable code snippets. The extracted Smali codes are carefully selected by filtering out ‘user-visible’ APIs and Intents. Therefore, payloads are able to be executed without any visible change noticed by the user. Besides, extracted payloads can be injected into different locations of the file based on sequence position or on the launcher class. Experiments were conducted to prove that randomly extracted payloads from benign apps are able to execute without causing any ‘user-visible’ behaviors or crashing the app when running the app in Android emulators.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
刚刚
乐观紫霜发布了新的文献求助10
1秒前
1秒前
1秒前
tjpuzhang发布了新的文献求助10
1秒前
苏孖完成签到,获得积分10
1秒前
无极微光应助foxp3采纳,获得20
1秒前
田様应助无敌草履虫大王采纳,获得10
2秒前
2秒前
2秒前
2秒前
xiaoxiao完成签到,获得积分10
2秒前
3秒前
3秒前
粗犷的蛟凤完成签到,获得积分10
4秒前
求助人员发布了新的文献求助10
4秒前
科研通AI6.2应助孤独幻枫采纳,获得10
4秒前
王皮皮发布了新的文献求助10
4秒前
4秒前
wanci应助坚强的严青采纳,获得10
4秒前
困于浪漫冬完成签到 ,获得积分10
5秒前
哦哟发布了新的文献求助10
5秒前
李健的小迷弟应助fanqiaqia采纳,获得10
5秒前
烟花应助漂泊采纳,获得10
5秒前
5秒前
5秒前
5秒前
6秒前
6秒前
6秒前
6秒前
6秒前
完美世界应助俗人采纳,获得10
6秒前
6秒前
PICC完成签到,获得积分10
6秒前
7秒前
YCQ完成签到,获得积分10
7秒前
7秒前
小yang发布了新的文献求助10
7秒前
爆米花应助ccl采纳,获得10
7秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Kinesiophobia : a new view of chronic pain behavior 3000
Les Mantodea de guyane 2500
Molecular Biology of Cancer: Mechanisms, Targets, and Therapeutics 2000
What is the Future of Psychotherapy in a Digital Age? 700
The Psychological Quest for Meaning 600
Zeolites: From Fundamentals to Emerging Applications 600
热门求助领域 (近24小时)
化学 材料科学 生物 医学 工程类 计算机科学 有机化学 物理 生物化学 纳米技术 复合材料 内科学 化学工程 人工智能 催化作用 遗传学 数学 基因 量子力学 物理化学
热门帖子
关注 科研通微信公众号,转发送积分 5954917
求助须知:如何正确求助?哪些是违规求助? 7164417
关于积分的说明 15936615
捐赠科研通 5089847
什么是DOI,文献DOI怎么找? 2735432
邀请新用户注册赠送积分活动 1696283
关于科研通互助平台的介绍 1617249