SeqAdver: Automatic Payload Construction and Injection in Sequence-based Android Adversarial Attack

有效载荷(计算) 对抗制 计算机科学 Android(操作系统) Android应用程序 序列(生物学) 操作系统 嵌入式系统 计算机安全 人工智能 网络数据包 生物 遗传学
作者
Fei Zhang,Ruitao Feng,Xiaofei Xie,Xiaohong Li,Lianshuan Shi
标识
DOI:10.1109/icdmw60847.2023.00172
摘要

Machine learning has achieved a great success in the field of Android malware detection. In order to avoid being caught by these ML-based Android malware detection, malware authors are inclined to initiate adversarial sample attacks by tampering with mobile applications. Although machine learning has high capability, it lacks robustness against adversarial attacks. Currently, many of the adversarial attacking tools not only inject dead code into target applications, which can never be executed, but also require the injection of many benign features into a malicious APK. This can be easily noticeable by program analysis techniques. In this paper, we propose SeqAdver, an automatic payload construction and injection tool, which aims to bring the adversarial attack to the next level by injecting a payload that allows execution without breaking the app’s original functionalities. These payloads are obtained from benign APKs at the Smali level and normalized into usable code snippets. The extracted Smali codes are carefully selected by filtering out ‘user-visible’ APIs and Intents. Therefore, payloads are able to be executed without any visible change noticed by the user. Besides, extracted payloads can be injected into different locations of the file based on sequence position or on the launcher class. Experiments were conducted to prove that randomly extracted payloads from benign apps are able to execute without causing any ‘user-visible’ behaviors or crashing the app when running the app in Android emulators.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
刚刚
汤姆屋屋的小叔完成签到,获得积分10
刚刚
CipherSage应助冰阔落采纳,获得10
刚刚
CCC发布了新的文献求助10
刚刚
英俊的铭应助淡淡翠安采纳,获得10
1秒前
skinnylove完成签到,获得积分10
1秒前
1秒前
休息日发布了新的文献求助10
1秒前
1秒前
刘鑫宇发布了新的文献求助10
2秒前
2秒前
3秒前
李子完成签到,获得积分10
3秒前
科目三应助lan采纳,获得10
3秒前
chenfeng发布了新的文献求助10
3秒前
可研发布了新的文献求助10
3秒前
美满的珠发布了新的文献求助20
4秒前
4秒前
4秒前
Ariel9999发布了新的文献求助10
5秒前
5秒前
甜心妮发布了新的文献求助10
6秒前
6秒前
FashionBoy应助xulei采纳,获得10
6秒前
Cherish完成签到,获得积分10
6秒前
6秒前
6秒前
故川完成签到,获得积分10
7秒前
chemier027发布了新的文献求助10
8秒前
8秒前
9秒前
irisjlj发布了新的文献求助10
9秒前
9秒前
Orange应助谜记采纳,获得10
9秒前
11秒前
酷酷如楠完成签到,获得积分10
11秒前
cwj发布了新的文献求助10
11秒前
13秒前
orixero应助清风明月采纳,获得10
13秒前
13秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Burger's Medicinal Chemistry, Drug Discovery and Development, Volumes 1 - 8, 8 Volume Set, 8th Edition 1800
Cronologia da história de Macau 1600
Netter collection Volume 9 Part I upper digestive tract及Part III Liver Biliary Pancreas 3rd 2024 的超高清PDF,大小约几百兆,不是几十兆版本的 1050
Current concept for improving treatment of prostate cancer based on combination of LH-RH agonists with other agents 1000
Research Handbook on the Law of the Sea 1000
Contemporary Debates in Epistemology (3rd Edition) 1000
热门求助领域 (近24小时)
化学 材料科学 医学 生物 工程类 有机化学 纳米技术 计算机科学 化学工程 生物化学 物理 复合材料 内科学 催化作用 物理化学 光电子学 细胞生物学 基因 电极 遗传学
热门帖子
关注 科研通微信公众号,转发送积分 6169228
求助须知:如何正确求助?哪些是违规求助? 7996747
关于积分的说明 16632387
捐赠科研通 5274240
什么是DOI,文献DOI怎么找? 2813642
邀请新用户注册赠送积分活动 1793398
关于科研通互助平台的介绍 1659321